First published: Thu Apr 20 2023(Updated: )
User-controlled operations could have allowed Denial of Service in M-Files Server before 23.4.12528.1 due to uncontrolled memory consumption for a scheduled job.
Credit: security@m-files.com security@m-files.com
Affected Software | Affected Version | How to fix |
---|---|---|
M-files M-files Server | <23.4.12528.1 |
Update to patched version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-0384 is a vulnerability in M-Files Server before version 23.4.12528.1 that allows for Denial of Service attacks due to uncontrolled memory consumption for a scheduled job.
CVE-2023-0384 has a severity rating of high, with a CVSS score of 7.5.
M-Files Server versions before 23.4.12528.1 are affected by CVE-2023-0384.
To fix the CVE-2023-0384 vulnerability, users should update their M-Files Server to version 23.4.12528.1 or later.
You can find more information about CVE-2023-0384 on the M-Files Trust Center Security Advisories page: https://www.m-files.com/about/trust-center/security-advisories/cve-2023-0384/