k2 records
1 published records for vendor k2.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
1 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
26Monitor | CVE-2018-9920No exploit | Server side request forgery exists in the runtime application in K2 smartforms 4.6.11 via a modified hostname in an https://*/Identity/STS/Fk2 · smartforms · CWE-918 | Medium6.5 | — | 0.8% | May 24, 2018 |
- CVE-2018-992026Monitor
Server side request forgery exists in the runtime application in K2 smartforms 4.6.11 via a modified hostname in an https://*/Identity/STS/F
MediumCVSS 6.5No exploitEPSS 1%k2 · smartformsMay 24, 2018