Portabilis i-Educar Stored Cross-Site Scripting Vulnerability in Turma Module

Vulnerability

A stored cross-site scripting vulnerability has been identified in Portabilis i-Educar version 2.9.0, specifically within the Turma module. The issue arises in the file 'intranet/educar_turma_tipo_det.php' when the 'cod_turma_tipo' parameter is used. The vulnerability is triggered by manipulating the 'nm_tipo' argument, allowing attackers to inject malicious JavaScript that is executed in the context of the user viewing the affected page. This vulnerability can be exploited remotely and requires user interaction.

Impact

Exploitation of this vulnerability allows for stored cross-site scripting, where injected scripts are executed in the context of the user.

Reproduction

To reproduce this vulnerability, log into the i-Educar platform and navigate to the Turma module. Access the 'Tipo de Turma' section and either edit an existing 'Turma Tipo' or create a new one. Insert a script payload into the 'Turma Tipo' field and save the changes. When the page is reopened, the injected script will execute.

Added: Jul 20, 2025, 5:17 AM
Updated: Jul 20, 2025, 5:17 AM

Vulnerability Rating

Custom Algorithm
spread
1.9
impact
1.7
exploitability
6.3
remediation
0.0
relevance
0.3
threat
6.4
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.