| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-4460 | Uploading SVG, WEBP and ICO files <= 1.2.1 - Author+ Stored XSS via SVG | Unknown | Uploading SVG, WEBP and ICO files | - | - | 2023-12-04 21:28:51 | Deep Dive |
| CVE-2023-6239 | Incorrect calculation of effective permissions | M-Files | M-Files Server | Medium | 5.4 | 2023-11-28 14:07:21 | Deep Dive |
| CVE-2023-6189 | Improper Permission Handling in M-Files Server | M-Files | M-Files Server | Medium | 4.3 | 2023-11-22 09:56:45 | Deep Dive |
| CVE-2023-6117 | M-Files REST API allows Denial of Service | M-Files | M-Files Server | Medium | 5.7 | 2023-11-22 09:56:33 | Deep Dive |
| CVE-2023-5307 | Photos and Files Contest Gallery – Contact Form < 21.2.8.1 - Unauthenticated Stored XSS via HTTP Headers | Unknown | Photos and Files Contest Gallery | 高危 | - | 2023-10-31 13:54:43 | Deep Dive |
| CVE-2005-10002 | almosteffortless secure-files Plugin secure-files.php sf_downloads path traversal | almosteffortless | secure-files Plugin | Medium | 5.5 | 2023-10-29 14:31:04 | Deep Dive |
| CVE-2023-5524 | M-Files Web Companion allows Remote Code Execution for some filetypes | M-Files | Web Companion | High | 8.2 | 2023-10-20 06:41:56 | Deep Dive |
| CVE-2023-5523 | M-Files Web Companion allows Remote Code Execution | M-Files | Web Companion | High | 8.6 | 2023-10-20 06:40:30 | Deep Dive |
| CVE-2023-2325 | Stored XSS Vulnerability in M-Files Classic Web | M-Files | M-Files Web | High | 7.3 | 2023-10-20 06:39:45 | Deep Dive |
| CVE-2023-4819 | Shared Files < 1.7.6 - Unauthenticated Stored Cross-Site Scripting | Unknown | Shared Files | 中危 | - | 2023-10-16 19:38:55 | Deep Dive |
| CVE-2023-4238 | Prevent files / folders access < 2.5.2 - Admin+ Arbitrary File Upload | Unknown | Prevent files / folders access | 高危 | - | 2023-09-25 15:56:53 | Deep Dive |
| CVE-2023-3406 | Path traversal issue in M-Files Classic Web | M-Files | M-Files Web | High | 7.7 | 2023-08-25 08:11:46 | Deep Dive |
| CVE-2023-3425 | CVE-2023-3425: Out-of-Bounds memory read | M-Files | M-Files Server | Medium | 6.5 | 2023-08-25 08:08:06 | Deep Dive |
| CVE-2023-3405 | Denial of service condition in M-Files Server | M-Files | M-Files Server | High | 7.5 | 2023-06-27 14:24:40 | Deep Dive |
| CVE-2023-2480 | Elevation of Privilege in M-Files Desktop Client | M-Files | M-Files Client | High | 7.5 | 2023-05-25 13:28:29 | Deep Dive |
| CVE-2023-2112 | Desktop component allows lateral movement between sessions | M-Files | M-Files Desktop | Low | 3.6 | 2023-04-20 08:05:52 | Deep Dive |
| CVE-2023-0384 | Uncontrolled Resource Consuption in M-Files Server | M-Files | M-Files Server | Medium | 6.5 | 2023-04-20 08:02:11 | Deep Dive |
| CVE-2023-0383 | Uncontrolled Resource Consuption in M-Files Server | M-Files | M-Files Server | High | 7.5 | 2023-04-20 08:00:32 | Deep Dive |
| CVE-2023-0382 | Uncontrolled Resource Consumption in M-Files Server | M-Files | M-Files Server | Medium | 6.5 | 2023-04-05 06:13:59 | Deep Dive |
| CVE-2023-0213 | Local Elevation of Privilege in M-Files | M-Files | M-Files | High | 8.8 | 2023-03-29 10:22:46 | Deep Dive |