In Nintex Automation 5.6 and 5.7 before 5.8, the K2 SmartForms Designer folder has configuration files (web.config) containing passwords that are readable by unauthorized users.
References
Configurations
No configuration.
History
10 Mar 2025, 23:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-03-10 23:15
Updated : 2025-03-10 23:15
NVD link : CVE-2025-27926
Mitre link : CVE-2025-27926
CVE.ORG link : CVE-2025-27926
JSON object : View
Products Affected
No product.
CWE
CWE-276
Incorrect Default Permissions