THREAT OPS › Threat News › [NVD] CVE-2025-10012 (MEDIUM 6.3) — A security vulnerability has been detected in Portabilis i-Educar up to 2.10. The impacted element is an unknown function of the file educar_historico_escolar_lst.php. Such manipulation of the argument ref_cod_aluno leads to sql injection. The attack can be executed remotely. The
[NVD] CVE-2025-10012 (MEDIUM 6.3) — A security vulnerability has been detected in Portabilis i-Educar up to 2.10. The impacted element is an unknown function of the file educar_historico_escolar_lst.php. Such manipulation of the argument ref_cod_aluno leads to sql injection. The attack can be executed remotely. The
CVE-2025-10012 CVSS: 6.3 MEDIUM Published: 2025-09-05T15:15:32.603
A security vulnerability has been detected in Portabilis i-Educar up to 2.10. The impacted element is an unknown function of the file educar_historico_escolar_lst.php. Such manipulation of the argument ref_cod_aluno leads to sql injection. The attack can be executed remotely. The exploit has been disclosed publicly and may be used
Indicators of compromise
- CVE-2025-10012cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-10012