ZeroHour

CVE-2025-27926

CVSS 3.1
5.3 medium
EPSS
<1%p27
Published
()
Modified
Description

In Nintex Automation 5.6 and 5.7 before 5.8, the K2 SmartForms Designer folder has configuration files (web.config) containing passwords that are readable by unauthorized users.

Vendors
nintex
Products
automation
Weakness
CWE-276, CWE-522
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.