A security vulnerability has been detected in Portabilis i-Educar up to 2.9.10. Affected by this issue is some unknown functionality of the file app/Http/Controllers/AccessLevelController.php of the component User Type Handler. The manipulation leads to insecure inherited permissions. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.
References
Configurations
No configuration.
History
11 Oct 2025, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
09 Oct 2025, 20:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-09 20:15
Updated : 2025-10-14 19:37
NVD link : CVE-2025-11554
Mitre link : CVE-2025-11554
CVE.ORG link : CVE-2025-11554
JSON object : View
Products Affected
No product.
