CVE-2025-9236
20.08.2025, 18:15
A vulnerability has been found in Portabilis i-Educar up to 2.10. This affects an unknown function of the file /intranet/educar_tipo_usuario_lst.php of the component Tipos de usurio Page. Such manipulation of the argument nm_tipo/descrio leads to sql injection. The attack may be performed from a remote location. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Vendor | Product | Version |
---|---|---|
portabilis | i-educar | 𝑥 ≤ 2.10 |
𝑥
= Vulnerable software versions
References