Vulnerabilities (CVE)

Filtered by vendor M-files Subscribe
Filtered by product Classic Web
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-3425 1 M-files 1 Classic Web 2023-12-10 N/A 5.3 MEDIUM
Out-of-bounds read issue in M-Files Server versions below 23.8.12892.6 and LTS Service Release Versions before 23.2 LTS SR3 allows unauthenticated user to read restricted amount of bytes from memory.
CVE-2023-3406 1 M-files 1 Classic Web 2023-12-10 N/A 6.5 MEDIUM
Path Traversal issue in M-Files Classic Web versions below 23.6.12695.3 and LTS Service Release Versions before 23.2 LTS SR3 allows authenticated user to read some restricted files on the web server
CVE-2023-2325 1 M-files 1 Classic Web 2023-12-10 N/A 5.4 MEDIUM
Stored XSS Vulnerability in M-Files Classic Web versions before 23.10 and LTS Service Release Versions before 23.2 LTS SR4 and 23.8 LTS SR1allows attacker to execute script on users browser via stored HTML document.