CVE-2025-9236 | Portabilis i-Diario up to 2.10 Tipos de usàrio Page educar_tipo_usuario_lst.php nm_tipo sql injection
A vulnerability classified as critical was found in Portabilis i-Diario up to 2.10. This affects an unknown function of the file /intranet/educar_tipo_usuario_lst.php of the component Tipos de usàrio Page. Such manipulation of the argument nm_tipo leads to sql injection.
This vulnerability is listed as CVE-2025-9236. The attack may be performed from a remote location. In addition, an exploit is available.
The vendor was contacted early about this disclosure but did not respond in any way.