First published: Wed Dec 20 2023(Updated: )
A vulnerable API method in M-Files Server before 23.12.13195.0 allows for uncontrolled resource consumption. Authenticated attacker can exhaust server storage space to a point where the server can no longer serve requests.
Credit: security@m-files.com
Affected Software | Affected Version | How to fix |
---|---|---|
M-Files | <23.12.13195.0 |
Update to patched version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-6910 has a severity level that indicates it can lead to uncontrolled resource consumption and service denial.
To fix CVE-2023-6910, upgrade M-Files Server to version 23.12.13195.0 or later.
An authenticated attacker can exploit CVE-2023-6910 to exhaust the server's storage space.
CVE-2023-6910 affects M-Files Server versions prior to 23.12.13195.0.
Failing to address CVE-2023-6910 may result in the M-Files Server being unable to serve requests due to storage exhaustion.