PT-2025-14856 · M Files · M-Files Server

Published

2025-04-04

·

Updated

2025-09-30

·

CVE-2025-3086

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
Name of the Vulnerable Software and Affected Versions M-Files Server versions prior to 25.3.14549
Description The issue is related to improper isolation of users, allowing an anonymous user to affect other anonymous users' views and potentially cause a denial of service. This could lead to unauthorized access to information or disruption of service.
Recommendations For versions prior to 25.3.14549, update to version 25.3.14549 or later to resolve the issue.

Fix

DoS

Weakness Enumeration

Related Identifiers

CVE-2025-3086

Affected Products

M-Files Server