Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown
CVE-2023-2325
Disclosure Date: October 20, 2023 (last updated August 28, 2024)
Stored XSS Vulnerability in M-Files Classic Web versions before 23.10 and LTS Service Release Versions before 23.2 LTS SR4 and 23.8 LTS SR1allows attacker to execute script on users browser via stored HTML document.
0
Attacker Value
Unknown
CVE-2023-3425
Disclosure Date: August 25, 2023 (last updated October 08, 2023)
Out-of-bounds read issue in M-Files Server versions below 23.8.12892.6 and LTS Service Release Versions before 23.2 LTS SR3 allows unauthenticated user to read restricted amount of bytes from memory.
0
Attacker Value
Unknown
CVE-2023-3406
Disclosure Date: August 25, 2023 (last updated October 08, 2023)
Path Traversal issue in M-Files Classic Web versions below 23.6.12695.3 and LTS Service Release Versions before 23.2 LTS SR3 allows authenticated user to read some restricted files on the web server
0
Attacker Value
Unknown
CVE-2005-0316
Disclosure Date: January 28, 2005 (last updated February 22, 2025)
WebWasher Classic 2.2.1 and 3.3, when running in server mode, does not properly drop CONNECT requests to the localhost from external systems, which could allow remote attackers to bypass intended access restrictions.
0