Unchecked parameter value in M-Files Server in versions before 23.6.12695.3 (excluding 23.2 SR2 and newer) allows anonymous user to cause denial of service

Project Subscriptions

Vendors Products
M-files Subscribe
M-files Server Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2023-44072 Unchecked parameter value in M-Files Server in versions before 23.6.12695.3 (excluding 23.2 SR2 and newer) allows anonymous user to cause denial of service
Fixes

Solution

Update to patched version


Workaround

No workaround given by the vendor.

History

Mon, 23 Feb 2026 10:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 23 Feb 2026 09:15:00 +0000

Type Values Removed Values Added
References

Wed, 28 Aug 2024 19:30:00 +0000


Wed, 28 Aug 2024 09:45:00 +0000


Wed, 28 Aug 2024 08:45:00 +0000

Type Values Removed Values Added
References

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: M-Files Corporation

Published:

Updated: 2026-02-23T08:46:31.978Z

Reserved: 2023-06-26T13:25:05.119Z

Link: CVE-2023-3405

cve-icon Vulnrichment

Updated: 2024-08-02T06:55:03.331Z

cve-icon NVD

Status : Modified

Published: 2023-06-27T15:15:11.447

Modified: 2026-02-23T09:16:14.837

Link: CVE-2023-3405

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses