CVE-2025-9106 | Portabilis i-Diario up to 1.5.0 Informações Adicionais Page /planos-de-ensino-por-disciplina Parecer/Conteúdos/Objetivos cross site scripting (EUVD-2025-25114)
A vulnerability identified as problematic has been detected in Portabilis i-Diario up to 1.5.0. This affects an unknown function of the file /planos-de-ensino-por-disciplina/ of the component Informações Adicionais Page. Performing manipulation of the argument Parecer/Conteúdos/Objetivos results in cross site scripting.
This vulnerability is reported as CVE-2025-9106. The attack is possible to be carried out remotely. Moreover, an exploit is present.
The vendor was contacted early about this disclosure but did not respond in any way.