Metrics
Affected Vendors & Products
Thu, 21 Aug 2025 12:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Portabilis
Portabilis i-diario |
|
Vendors & Products |
Portabilis
Portabilis i-diario |
Wed, 20 Aug 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 20 Aug 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been found in Portabilis i-Diario up to 2.10. This affects an unknown function of the file /intranet/educar_tipo_usuario_lst.php of the component Tipos de usàrio Page. Such manipulation of the argument nm_tipo leads to sql injection. The attack may be performed from a remote location. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | Portabilis i-Diario Tipos de usàrio educar_tipo_usuario_lst.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
|
|
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-08-20T17:32:06.078Z
Updated: 2025-08-20T18:50:05.088Z
Reserved: 2025-08-20T10:55:34.612Z
Link: CVE-2025-9236

Updated: 2025-08-20T18:50:00.674Z

Status : Received
Published: 2025-08-20T18:15:36.333
Modified: 2025-08-20T18:15:36.333
Link: CVE-2025-9236

No data.