THREAT OPS › Threat News › [NVD] CVE-2026-2015 (MEDIUM 6.3) — A weakness has been identified in Portabilis i-Educar up to 2.10. Affected is an unknown function of the file FinalStatusImportService.php of the component Final Status Import. Executing a manipulation of the argument school_id can lead to improper authorization. The attack can b
[NVD] CVE-2026-2015 (MEDIUM 6.3) — A weakness has been identified in Portabilis i-Educar up to 2.10. Affected is an unknown function of the file FinalStatusImportService.php of the component Final Status Import. Executing a manipulation of the argument school_id can lead to improper authorization. The attack can b
CVE-2026-2015 CVSS: 6.3 MEDIUM Published: 2026-02-06T11:15:51.127
A weakness has been identified in Portabilis i-Educar up to 2.10. Affected is an unknown function of the file FinalStatusImportService.php of the component Final Status Import. Executing a manipulation of the argument school_id can lead to improper authorization. The attack can be executed remotely. The exploit has been made availa
Indicators of compromise
- CVE-2026-2015cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-2015