Vulnerability index

Browse CVEs

45 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2023-0383 User-controlled operations could have allowed Denial of Service in M-Files Server before 23.4.12528.1 due to uncontrolled memory consumption. M Files Server 23.4.12528.1+ Fix from $1,9502023-04-20 HIGH 7.5 CVE-2023-0384 User-controlled operations could have allowed Denial of Service in M-Files Server before 23.4.12528.1 due to uncontrolled memory consumption for a … M Files Server 23.4.12528.1+ Fix from $1,9502023-04-20 MEDIUM 6.5 CVE-2023-0382 User-controlled operations could have allowed Denial of Service in M-Files Server before 23.4.12528.1 due to uncontrolled memory consumption. M Files Server 23.4.12528.1+ Fix from $1,6002023-04-05 HIGH 7.8 CVE-2023-0213 Elevation of privilege issue in M-Files Installer versions before 22.6 on Windows allows user to gain SYSTEM privileges via DLL hijacking. M Files 22.6+ Fix from $1,9502023-03-29 HIGH 7.6 CVE-2022-4862 Rendering of HTML provided by another authenticated user is possible in browser on M-Files Web before 22.12.12140.3. This allows the content to steal… M Files Server 22.12.12140.3+ Fix from $1,9502023-03-06 HIGH 7.5 CVE-2022-3284 Download key for a file in a vault was passed in an insecure way that could easily be logged in M-Files New Web in M-Files before 22.11.12011.0. This… M Files Server 22.11.12011.0+ Fix from $1,9502023-03-06 HIGH 7.5 CVE-2022-4858 Insertion of Sensitive Information into Log Files in M-Files Server before 22.10.11846.0 could allow to obtain sensitive tokens from logs, if specifi… M Files Server 22.10.11846.0+ Fix from $1,9502022-12-30 MEDIUM 5.3 CVE-2022-1911 Error in parser function in M-Files Server versions before 22.6.11534.1 and before 22.6.11505.0 allowed unauthenticated access to some information of… M Files Server 22.6.11534.4+ Fix from $1,6002022-11-30 HIGH 7.5 CVE-2022-39018 Broken access controls on PDFtron data in M-Files Hubshare before 3.3.11.3 allows unauthenticated attackers to access restricted PDF files via a know… Hubshare 3.3.11.3+ Fix from $1,9502022-10-31 HIGH 7.5 CVE-2022-39019 Broken access controls on PDFtron WebviewerUI in M-Files Hubshare before 3.3.11.3 allows unauthenticated attackers to upload malicious files to the a… Hubshare 3.3.11.3+ Fix from $1,9502022-10-31 MEDIUM 5.4 CVE-2022-39017 Improper input validation and output encoding in all comments fields, in M-Files Hubshare before 3.3.10.9 allows authenticated attackers to introduce… Hubshare 3.3.10.9+ Fix from $1,6002022-10-31 HIGH 8.8 CVE-2022-39016 Javascript injection in PDFtron in M-Files Hubshare before 3.3.10.9 allows authenticated attackers to perform an account takeover via a crafted PDF u… Hubshare 3.3.10.9+ Fix from $1,9502022-10-31 CRITICAL 9.8 CVE-2021-41807 Lack of rate limiting in M-Files Server and M-Files Web products with versions before 21.12.10873.0 in certain type of user accounts allows unlimited… M Files Server 21.12.10873.0+ Fix from $2,3002022-01-18 HIGH 7.5 CVE-2021-37253 M-Files Web before 20.10.9524.1 allows a denial of service via overlapping ranges (in HTTP requests with crafted Range or Request-Range headers). NOT… M Files Web 20.10.9524.1+ Fix from $1,9502021-12-05 HIGH 7.5 CVE-2021-37254 In M-Files Web product with versions before 20.10.9524.1 and 20.10.9445.0, a remote attacker could use a flaw to obtain unauthenticated access to 3rd… M Files Web 20.10.9445.0 / 20.10.9534.1+ Fix from $1,9502021-10-28