CVE-2025-10591: Portabilis I-Educar
Medium severity, CVSS 5.4. EPSS: 0.2% chance of exploitation in the next 30 days.
A weakness has been identified in Portabilis i-Educar up to 2.10. This affects an unknown function of the file /intranet/educar_funcao_cad.php of the component Editar Função Page. This manipulation of the argument abreviatura/tipoacao causes cross site scripting. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited.
Affected products
- Portabilis I-Educar: up to and including 2.10.0
Published 2025-09-17. Last modified 2026-09-26.