This host is installed with CIS Manager and is prone to SQL injection vulnerability.
Successful exploitation will allow attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data. Impact Level: Application
No solution or patch is available as of 30th January, 2015. Information regarding this issue will be updated once the solution details are available. For updates refer to http://www.construtiva.com.br/cismanager
The flaw is due to the /autenticar/lembrarlogin.asp script not properly sanitizing user-supplied input to the 'email' parameter.
CIS Manager CMS
Send a crafted data via HTTP GET request and check whether it is able to read SQL injection error.