Metrics
Affected Vendors & Products
Tue, 02 Sep 2025 19:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:a:portabilis:i-diario:*:*:*:*:*:*:*:* |
Mon, 18 Aug 2025 21:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Portabilis
Portabilis i-diario |
|
Vendors & Products |
Portabilis
Portabilis i-diario |
Mon, 18 Aug 2025 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 18 Aug 2025 06:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Mon, 18 Aug 2025 06:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in Portabilis i-Diario up to 1.5.0. This vulnerability affects unknown code of the file /planos-de-ensino-por-disciplina/ of the component Informações Adicionais Page. The manipulation of the argument Parecer/Conteúdos/Objetivos leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | A vulnerability was found in Portabilis i-Diario up to 1.5.0. This affects an unknown function of the file /planos-de-ensino-por-disciplina/ of the component Informações Adicionais Page. Performing manipulation of the argument Parecer/Conteúdos/Objetivos results in cross site scripting. The attack is possible to be carried out remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way. |
References |
|
Mon, 18 Aug 2025 05:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in Portabilis i-Diario up to 1.5.0. This vulnerability affects unknown code of the file /planos-de-ensino-por-disciplina/ of the component Informações Adicionais Page. The manipulation of the argument Parecer/Conteúdos/Objetivos leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | Portabilis i-Diario Informações Adicionais /planos-de-ensino-por-disciplina cross site scripting | |
Weaknesses | CWE-79 CWE-94 |
|
References |
|
|
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-08-18T12:48:44.562Z
Reserved: 2025-08-17T20:37:57.777Z
Link: CVE-2025-9106

Updated: 2025-08-18T12:48:34.273Z

Status : Analyzed
Published: 2025-08-18T05:15:28.730
Modified: 2025-09-02T18:21:49.583
Link: CVE-2025-9106

No data.

Updated: 2025-08-18T20:44:13Z