Aggregator
CVE-2025-8370 | Portabilis i-Educar 2.9 educar_escolaridade_lst.php descricao cross site scripting
4 months 2 weeks ago
A vulnerability, which was classified as problematic, was found in Portabilis i-Educar 2.9. Affected is an unknown function of the file /intranet/educar_escolaridade_lst.php. The manipulation of the argument descricao leads to cross site scripting.
This vulnerability is traded as CVE-2025-8370. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2025-8369 | Portabilis i-Educar 2.9 educar_avaliacao_desempenho_lst.php titulo_avaliacao cross site scripting (EUVD-2025-23238)
4 months 2 weeks ago
A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar 2.9. This issue affects some unknown processing of the file /intranet/educar_avaliacao_desempenho_lst.php. The manipulation of the argument titulo_avaliacao leads to cross site scripting.
The identification of this vulnerability is CVE-2025-8369. The attack may be initiated remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2025-8368 | Portabilis i-Educar 2.9 pesquisa_pessoa_lst.php campo_busca/cpf cross site scripting (EUVD-2025-23240)
4 months 2 weeks ago
A vulnerability classified as problematic was found in Portabilis i-Educar 2.9. This vulnerability affects unknown code of the file /intranet/pesquisa_pessoa_lst.php. The manipulation of the argument campo_busca/cpf leads to cross site scripting.
This vulnerability was named CVE-2025-8368. The attack can be initiated remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2025-8367 | Portabilis i-Educar 2.9 funcionario_vinculo_lst.php nome cross site scripting (EUVD-2025-23236)
4 months 2 weeks ago
A vulnerability classified as problematic has been found in Portabilis i-Educar 2.9. This affects an unknown part of the file /intranet/funcionario_vinculo_lst.php. The manipulation of the argument nome leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-8367. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2025-8366 | Portabilis i-Educar 2.9 educar_servidor_lst.php nome/matricula_servidor cross site scripting (EUVD-2025-23237)
4 months 2 weeks ago
A vulnerability was found in Portabilis i-Educar 2.9. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /intranet/educar_servidor_lst.php. The manipulation of the argument nome/matricula_servidor leads to cross site scripting.
This vulnerability is handled as CVE-2025-8366. The attack may be launched remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2025-8365 | Portabilis i-Educar 2.10 atendidos_cad.php nome/nome_social/email cross site scripting (EUVD-2025-23234)
4 months 2 weeks ago
A vulnerability was found in Portabilis i-Educar 2.10. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file atendidos_cad.php. The manipulation of the argument nome/nome_social/email leads to cross site scripting.
This vulnerability is known as CVE-2025-8365. The attack can be launched remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
Submit #622556: code-projects Exam Form Submission V1.0 SQL injection [Accepted]
4 months 2 weeks ago
Submit #622556 / VDB-318344
zhuchengqing
Submit #622557: code-projects Exam Form Submission V1.0 SQL injection [Accepted]
4 months 2 weeks ago
Submit #622557 / VDB-318343
zhuchengqing
TEST SB
4 months 2 weeks ago
TEST SB
The post TEST SB appeared first on Security Boulevard.
Greg Yarnold
Submit #618676: Portabilis i-Educar 2.9 Cross Site Scripting [Accepted]
4 months 2 weeks ago
Submit #618676 / VDB-318342
marceloQz
Submit #618675: Portabilis i-Educar 2.9 Cross Site Scripting [Accepted]
4 months 2 weeks ago
Submit #618675 / VDB-318341
marceloQz
Submit #618669: Portabilis i-Educar 2.9 Cross Site Scripting [Accepted]
4 months 2 weeks ago
Submit #618669 / VDB-318340
marceloQz
Submit #618668: Portabilis i-Educar 2.9 Cross Site Scripting [Accepted]
4 months 2 weeks ago
Submit #618668 / VDB-318339
marceloQz
Submit #618667: Portábilis i-educar 2.9 Cross Site Scripting [Accepted]
4 months 2 weeks ago
Submit #618667 / VDB-318338
marceloQz
Submit #618639: Portabilis i-Educar 2.10 Cross Site Scripting [Duplicate]
4 months 2 weeks ago
Submit #618639 / VDB-316980
nmmorette
Submit #618583: Portabilis I-educar 2.10 Cross Site Scripting [Accepted]
4 months 2 weeks ago
Submit #618583 / VDB-318337
nmmorette
CVE-2025-36611 | Dell Encryption/Security Management Server up to 11.10.x link following (dsa-2025-292)
4 months 2 weeks ago
A vulnerability was found in Dell Encryption and Security Management Server up to 11.10.x. It has been classified as critical. Affected is an unknown function. The manipulation leads to link following.
This vulnerability is traded as CVE-2025-36611. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-7999 | Ashlar-Vellum Cobalt AR File Parser type confusion
4 months 2 weeks ago
A vulnerability was found in Ashlar-Vellum Cobalt and classified as critical. This issue affects some unknown processing of the component AR File Parser. The manipulation leads to type confusion.
The identification of this vulnerability is CVE-2025-7999. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-7994 | Ashlar-Vellum Cobalt AR File Parser out-of-bounds
4 months 2 weeks ago
A vulnerability has been found in Ashlar-Vellum Cobalt and classified as critical. This vulnerability affects unknown code of the component AR File Parser. The manipulation leads to out-of-bounds read.
This vulnerability was named CVE-2025-7994. The attack can be initiated remotely. There is no exploit available.
vuldb.com