Show filters
93 Total Results
Displaying 51-60 of 93
Sort by:
Attacker Value
Unknown
CVE-2022-4264
Disclosure Date: December 09, 2022 (last updated August 28, 2024)
Incorrect Privilege Assignment in M-Files Web (Classic) in M-Files before 22.8.11691.0 allows low privilege user to change some configuration.
0
Attacker Value
Unknown
CVE-2022-4270
Disclosure Date: December 02, 2022 (last updated August 28, 2024)
Incorrect privilege assignment issue in M-Files Web in M-Files Web versions before 22.5.11436.1 could have changed permissions accidentally.
0
Attacker Value
Unknown
CVE-2022-1911
Disclosure Date: November 30, 2022 (last updated August 28, 2024)
Error in parser function in M-Files Server versions before 22.6.11534.1 and before 22.6.11505.0 allowed unauthenticated access to some information of the underlying operating system.
0
Attacker Value
Unknown
CVE-2022-1606
Disclosure Date: November 30, 2022 (last updated August 28, 2024)
Incorrect privilege assignment in M-Files Server versions before 22.3.11164.0 and before 22.3.11237.1 allows user to read unmanaged objects.
0
Attacker Value
Unknown
CVE-2022-39016
Disclosure Date: October 31, 2022 (last updated October 26, 2023)
Javascript injection in PDFtron in M-Files Hubshare before 3.3.10.9 allows authenticated attackers to perform an account takeover via a crafted PDF upload.
0
Attacker Value
Unknown
CVE-2022-39017
Disclosure Date: October 31, 2022 (last updated October 26, 2023)
Improper input validation and output encoding in all comments fields, in M-Files Hubshare before 3.3.10.9 allows authenticated attackers to introduce cross-site scripting attacks via specially crafted comments.
0
Attacker Value
Unknown
CVE-2022-39019
Disclosure Date: October 31, 2022 (last updated October 26, 2023)
Broken access controls on PDFtron WebviewerUI in M-Files Hubshare before 3.3.11.3 allows unauthenticated attackers to upload malicious files to the application server.
0
Attacker Value
Unknown
CVE-2022-39018
Disclosure Date: October 31, 2022 (last updated October 26, 2023)
Broken access controls on PDFtron data in M-Files Hubshare before 3.3.11.3 allows unauthenticated attackers to access restricted PDF files via a known URL.
0
Attacker Value
Unknown
CVE-2022-36285
Disclosure Date: August 11, 2022 (last updated February 24, 2025)
Authenticated Arbitrary File Upload vulnerability in dmitrylitvinov Uploading SVG, WEBP and ICO files plugin <= 1.0.1 at WordPress.
0
Attacker Value
Unknown
CVE-2022-34648
Disclosure Date: August 11, 2022 (last updated February 24, 2025)
Authenticated (author+) Stored Cross-Site Scripting (XSS) vulnerability in dmitrylitvinov Uploading SVG, WEBP and ICO files plugin <= 1.0.1 at WordPress.
0