CVE-2018-9920
24.05.2018, 13:29
Server side request forgery exists in the runtime application in K2 smartforms 4.6.11 via a modified hostname in an https://*/Identity/STS/Forms/Scripts URL.
Vendor | Product | Version |
---|---|---|
k2 | smartforms | 4.6.11 |
𝑥
= Vulnerable software versions