First published: Wed Nov 30 2022(Updated: )
Error in parser function in M-Files Server versions before 22.6.11534.1 and before 22.6.11505.0 allowed unauthenticated access to some information of the underlying operating system.
Credit: security@m-files.com security@m-files.com
Affected Software | Affected Version | How to fix |
---|---|---|
M-files M-files Server | <22.6.11534.4 |
Upgrade M-Files to non-affected versions.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID CVE-2022-1911 is an error in the parser function in M-Files Server versions before 22.6.11534.1 and before 22.6.11505.0 that allowed unauthenticated access to some information of the underlying operating system.
The severity of CVE-2022-1911 is medium with a CVSS score of 5.3.
CVE-2022-1911 can be exploited by exploiting the error in the parser function in M-Files Server versions before 22.6.11534.1 and before 22.6.11505.0 to gain unauthenticated access to some information of the underlying operating system.
To protect your system from CVE-2022-1911, update your M-Files Server to versions 22.6.11534.1 or later.
You can find more information about CVE-2022-1911 on the M-Files Security Advisories page: https://www.m-files.com/about/trust-center/security-advisories/cve-2022-1911/