PT-2025-14856 · M Files · M-Files Server
Published
2025-04-04
·
Updated
2025-09-30
·
CVE-2025-3086
CVSS v3.1
7.1
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H |
Name of the Vulnerable Software and Affected Versions
M-Files Server versions prior to 25.3.14549
Description
The issue is related to improper isolation of users, allowing an anonymous user to affect other anonymous users' views and potentially cause a denial of service. This could lead to unauthorized access to information or disruption of service.
Recommendations
For versions prior to 25.3.14549, update to version 25.3.14549 or later to resolve the issue.
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
M-Files Server