SQL injection vulnerability in Runtime/Runtime/AjaxCall.ashx in K2 blackpearl, smartforms, and K2 for SharePoint 4.6.7 allows remote malicious users to execute arbitrary SQL commands via the xml parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
nintex k2 blackpearl 4.6.7 |
||
nintex k2 for sharepoint 4.6.7 |
||
nintex k2 smartforms 4.6.7 |