Security Advisory

CVE-2018-9920

6.5
MEDIUM

Vulnerability Description

Server side request forgery exists in the runtime application in K2 smartforms 4.6.11 via a modified hostname in an https://*/Identity/STS/Forms/Scripts URL.
Published Date May 24, 2018
Official Source NIST NVD Advisory