Security Advisory

CVE-2025-10099

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-09-08 17:32:09
Last updated 2025-09-08 18:57:09
Assigner VulDB
State PUBLISHED

Description

A weakness has been identified in Portabilis i-Educar up to 2.10. Affected by this vulnerability is an unknown functionality of the file /intranet/educar_usuario_cad.php of the component Editar usuário Page. This manipulation of the argument email/data_inicial/data_expiracao causes cross site scripting. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited.