CVE-2025-10099

Published
View on NVD ↗
CVSS v3
2.4
LOW
CVSS v2
3.3
LOW
Affected
1
PROJECT

Description

A weakness has been identified in Portabilis i-Educar up to 2.10. Affected by this vulnerability is an unknown functionality of the file /intranet/educar_usuario_cad.php of the component Editar usuário Page. This manipulation of the argument email/data_inicial/data_expiracao causes cross site scripting. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited.

CVE's POC
GitHubGitHub