The Czech Republic's National Cyber and Information Security Agency (NUKIB) is instructing critical infrastructure organizations in the country to avoid using Chinese technology or transferring user data to servers located in China. [...]
A vulnerability has been found in SourceCodester Online Polling System 1.0 and classified as critical. Affected is an unknown function of the file /admin/candidates.php. Performing manipulation of the argument ID results in sql injection.
This vulnerability is known as CVE-2025-10078. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
A vulnerability, which was classified as critical, was found in SourceCodester Online Polling System 1.0. This impacts an unknown function of the file /registeracc.php. Such manipulation of the argument email leads to sql injection.
This vulnerability is traded as CVE-2025-10077. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, has been found in SourceCodester Online Polling System 1.0. This affects an unknown function of the file /manage-profile.php. This manipulation of the argument email causes sql injection.
This vulnerability appears as CVE-2025-10076. The attack may be initiated remotely. In addition, an exploit is available.
A vulnerability classified as problematic was found in SourceCodester Online Polling System 1.0. The impacted element is an unknown function of the file /manage-profile.php. The manipulation of the argument firstname results in cross site scripting.
This vulnerability is reported as CVE-2025-10075. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability classified as problematic has been found in Portabilis i-Educar up to 2.10. The affected element is an unknown function of the file /usuarios/tipos/. The manipulation of the argument Tipos de Usuário/Descrição leads to cross site scripting.
This vulnerability is documented as CVE-2025-10074. The attack can be initiated remotely. Additionally, an exploit exists.
A vulnerability described as problematic has been identified in Portabilis i-Educar up to 2.10. Impacted is an unknown function of the file /module/Api/turma. Executing manipulation can lead to improper authorization.
This vulnerability is registered as CVE-2025-10073. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A vulnerability marked as critical has been reported in Portabilis i-Educar up to 2.10. This issue affects some unknown processing of the file /matricula/[ID_STUDENT]/enturmar/. Performing manipulation results in improper access controls.
This vulnerability is cataloged as CVE-2025-10072. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability labeled as critical has been found in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /cancelar-enturmacao-em-lote/. Such manipulation leads to improper access controls.
This vulnerability is listed as CVE-2025-10071. The attack may be performed from remote. In addition, an exploit is available.
A vulnerability identified as critical has been detected in Portabilis i-Educar up to 2.10. This affects an unknown part of the file /enturmacao-em-lote/. This manipulation causes improper access controls.
This vulnerability is tracked as CVE-2025-10070. The attack is possible to be carried out remotely. Moreover, an exploit is present.