Skip to main content

Vendor/product archive

k2 / smartforms CVEs

Beta · best-effort

1 CVEs tagged to k2 / smartforms0 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2018-9920

Published May 24, 2018

Server side request forgery exists in the runtime application in K2 smartforms 4.6.11 via a modified hostname in an https://*/Identity/STS/Forms/Scripts URL.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1