Denial of Service Vulnerability in M-Files Server by M-Files
CVE-2025-0648
5.9MEDIUM
Summary
A vulnerability in M-Files Server facilitates a denial of service when a highly privileged attacker manipulates configurations. This issue occurs in the database driver of the server, leading to unexpected crashes in earlier versions, specifically those before 25.1.14445.5. Organizations using affected versions are advised to implement the latest updates to mitigate this risk.
Affected Version(s)
M-Files Server 0 < 25.1.14445.5
References
CVSS V4
Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved