2017-10-23 08:00:00
mitre
PUBLISHED
SQL Injection exists in the E-Sic 1.0 password reset parameter (aka the cpfcnpj parameter to the /reset URI).