CVE-2017-15380: Softwarepublico E-Sic

Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.

XSS exists in the E-Sic 1.0 /cadastro/index.php URI (aka the requester's registration area) via the nome parameter.

Affected products

Published 2017-10-23. Last modified 2026-06-17.