Under rare conditions, the effective permissions of an object might be incorrectly calculated if the object has a specific configuration of metadata-driven permissions in M-Files Server versions 23.9, 23.10, and 23.11 before 23.11.13168.7, potentially enabling unauthorized access to the object.
References
Link | Resource |
---|---|
https://www.m-files.com/about/trust-center/security-advisories/cve-2023-6239/ | Broken Link |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2023-11-28 14:15
Updated : 2023-12-04 19:06
NVD link : CVE-2023-6239
Mitre link : CVE-2023-6239
CVE.ORG link : CVE-2023-6239
JSON object : View
Products Affected
m-files
- m-files_server
CWE
CWE-281
Improper Preservation of Permissions