First published: Wed Nov 22 2023(Updated: )
A possibility of unwanted server memory consumption was detected through the obsolete functionalities in the Rest API methods of the M-Files server before 23.11.13156.0 which allows attackers to execute DoS attacks.
Credit: security@m-files.com
Affected Software | Affected Version | How to fix |
---|---|---|
M-files M-files Server | <=23.11.13156.0 |
Update to patched version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-6117.
The title of this vulnerability is 'M-Files REST API allows Denial of Service'.
This vulnerability involves a possibility of unwanted server memory consumption through the obsolete functionalities in the Rest API methods of the M-Files server, allowing attackers to execute DoS attacks.
CVE-2023-6117 has a severity rating of 7.5 (high).
The affected software for CVE-2023-6117 is M-Files Server versions up to and including 23.11.13156.0.
To fix CVE-2023-6117, update your M-Files Server to a version higher than 23.11.13156.0.
You can find more information about CVE-2023-6117 at the following link: [CVE-2023-6117](https://www.m-files.com/about/trust-center/security-advisories/cve-2023-6117/)