CVE-2025-10605Medium· 4.3▾ SunlitA security flaw has been discovered in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /agenda_preferencias.php. The manipulation of the argument tipoacao results in cross site scripting. The attack ma…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 23.7 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.4%
A security flaw has been discovered in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /agenda_preferencias.php. The manipulation of the argument tipoacao results in cross site scripting. The attack may be launched remotely. The exploit has been released to the public and may be exploited.
i-educar <= 2.10.0Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-10584Low· 3.5A vulnerability was identified in Portabilis i-Educar up to 2.10
CVE-2025-10590Medium· 4.3A security flaw has been discovered in Portabilis i-Educar up to 2.10
CVE-2025-10591Low· 3.5A weakness has been identified in Portabilis i-Educar up to 2.10
CVE-2025-8538Low· 2.4A security flaw has been discovered in Portabilis i-Educar 2.10
CVE-2025-8539Low· 2.4A weakness has been identified in Portabilis i-Educar 2.10
CVE-2023-5578Low· 3.5A vulnerability was detected in Portábilis i-Educar up to 2.7.5