Vulnerabilities (CVE)

Filtered by vendor M-files Subscribe
Filtered by product Classic Web
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-2325 1 M-files 1 Classic Web 2023-10-26 N/A 5.4 MEDIUM
Stored XSS Vulnerability in M-Files Classic Web versions before 23.10 and LTS Service Release Versions before 23.2 LTS SR4 and 23.8 LTS SR1allows attacker to execute script on users browser via stored HTML document.
CVE-2023-3406 1 M-files 1 Classic Web 2023-08-31 N/A 6.5 MEDIUM
Path Traversal issue in M-Files Classic Web versions below 23.6.12695.3 and LTS Service Release Versions before 23.2 LTS SR3 allows authenticated user to read some restricted files on the web server
CVE-2023-3425 1 M-files 1 Classic Web 2023-08-31 N/A 5.3 MEDIUM
Out-of-bounds read issue in M-Files Server versions below 23.8.12892.6 and LTS Service Release Versions before 23.2 LTS SR3 allows unauthenticated user to read restricted amount of bytes from memory.