CVE-2025-10846

Severity CVSS v4.0:
MEDIUM
Type:
CWE-74 Injection
Publication date:
23/09/2025
Last modified:
23/09/2025

Description

A vulnerability was determined in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /module/ComponenteCurricular/edit. This manipulation of the argument ID causes sql injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.