When your password contains < or > and you attempt to log into K2 with Forms STS, the password will display on the screen and the authentication request will fail.
The following error occurs: “A potentially dangerous Request.Form value was detected from the client Password”.
The fix is available in the following K2 versions:
K2 4.7 March 2018 Cumulative Update | K2 Five (5.0) September 2018 Cumulative Update | K2 Five (5.1) November 2018 Cumulative Update | K2 Five (5.2) May 2019 Cumulative Update | K2 Five (5.3) |
---|---|---|---|---|
X | X | X | X | Fix Pack 31 |