Download key for a file in a vault was passed in an insecure way that could easily be logged in M-Files New Web in M-Files before 22.11.12011.0. This issue affects M-Files New Web: before 22.11.12011.0.
History

Wed, 28 Aug 2024 10:45:00 +0000

Type Values Removed Values Added
References

cve-icon MITRE

Status: PUBLISHED

Assigner: M-Files Corporation

Published: 2023-03-06T10:39:43.877Z

Updated: 2024-08-28T20:00:07.310Z

Reserved: 2022-09-23T10:58:26.526Z

Link: CVE-2022-3284

cve-icon Vulnrichment

Updated: 2024-08-03T01:07:05.842Z

cve-icon NVD

Status : Modified

Published: 2023-03-06T11:15:10.430

Modified: 2024-08-28T11:15:13.183

Link: CVE-2022-3284

cve-icon Redhat

No data.