First published: Mon Mar 04 2024(Updated: )
Stored XSS Vulnerability in M-Files Web versions before 23.8 allows attacker to execute script on users browser via stored HTML document within limited time period.
Credit: security@m-files.com
Affected Software | Affected Version | How to fix |
---|---|---|
M-Files | <23.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-4479 is classified as a stored XSS vulnerability, which can have a critical impact on application security.
To mitigate CVE-2023-4479, upgrade M-Files Web to version 23.8 or later immediately.
CVE-2023-4479 allows attackers to execute malicious scripts in users' browsers via stored HTML documents.
CVE-2023-4479 affects all M-Files Web versions prior to 23.8.
Organizations should prioritize patching M-Files Web to prevent exploitation of CVE-2023-4479.