CVE-2025-0635: Denial of Service condition in M-Files Server
Published Jan 23, 2025
·Updated
Denial of service condition in M-Files Server in versions before
25.1.14445.5 allows an unauthenticated user to consume computing resources in certain conditions.
Affected Software
2 affected components
M-Files M-Files server<25.1.14445.5
M-Files M-Files server<25.1.14445.5
Event History
Jan 23, 2025
CVE Published
via MITRE·11:07 AM
Data Sourced
via MITRE·11:07 AM
DescriptionWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-0635?
CVE-2025-0635 is classified as a denial of service vulnerability.
2
How do I fix CVE-2025-0635?
To mitigate CVE-2025-0635, upgrade M-Files Server to version 25.1.14445.5 or later.
3
Who is affected by CVE-2025-0635?
CVE-2025-0635 affects M-Files Server versions prior to 25.1.14445.5.
4
What type of attack does CVE-2025-0635 enable?
CVE-2025-0635 allows an unauthenticated user to consume computing resources, leading to a denial of service.
5
Is authentication required to exploit CVE-2025-0635?
No, CVE-2025-0635 can be exploited by unauthenticated users.