Low severity3.5NVD Advisory· Published Sep 13, 2025· Updated Apr 29, 2026
CVE-2025-10372
CVE-2025-10372
Description
A weakness has been identified in Portabilis i-Educar up to 2.10. Impacted is an unknown function of the file /intranet/educar_modulo_cad.php. This manipulation of the argument nm_tipo/descricao causes cross site scripting. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:portabilis:i-educar:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:portabilis:i-educar:*:*:*:*:*:*:*:*range: <=2.10.0
- (no CPE)range: <=2.10
Patches
Vulnerability mechanics
References
5- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdPermissions RequiredVDB Entry
- karinagante.github.io/cve-2025-10372/nvd
- karinagante.github.io/cve-2025-10372/nvd
News mentions
0No linked articles in our index yet.