CVE-2025-8785 | Portabilis i-Educar up to 2.9 educar_usuario_lst.php nm_pessoa/matricula/matricula_interna cross site scripting (EUVD-2025-24065)
A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar up to 2.9. This issue affects some unknown processing of the file /intranet/educar_usuario_lst.php. The manipulation of the argument nm_pessoa/matricula/matricula_interna leads to cross site scripting.
The identification of this vulnerability is CVE-2025-8785. The attack may be initiated remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.