CVE-2025-7113 | Portabilis i-Educar 2.9.0 Curricular Components Module edit?id=ID Nome cross site scripting
A vulnerability was found in Portabilis i-Educar 2.9.0. It has been classified as problematic. Affected is an unknown function of the file /module/ComponenteCurricular/edit?id=ID of the component Curricular Components Module. The manipulation of the argument Nome leads to cross site scripting.
This vulnerability is traded as CVE-2025-7113. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More