Description
Out-of-bounds read issue in M-Files Server versions below 23.8.12892.6 and LTS Service Release Versions before 23.2 LTS SR3 allows unauthenticated user to read restricted amount of bytes from memory.
Published: 2023-08-25
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Update to M-Files release versions 23.8 or newer, or update to LTS versions 23.2 SR3 or newer

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-44091 Out-of-bounds read issue in M-Files Server versions below 23.8.12892.6 and LTS Service Release Versions before 23.2 LTS SR3 allows unauthenticated user to read restricted amount of bytes from memory.
History

Mon, 23 Feb 2026 10:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 23 Feb 2026 09:15:00 +0000

Type Values Removed Values Added
References

Wed, 28 Aug 2024 19:30:00 +0000


Wed, 28 Aug 2024 09:45:00 +0000


Wed, 28 Aug 2024 08:45:00 +0000

Type Values Removed Values Added
References

Subscriptions

M-files Classic Web
cve-icon MITRE

Status: PUBLISHED

Assigner: M-Files Corporation

Published:

Updated: 2026-02-23T08:48:57.088Z

Reserved: 2023-06-27T05:38:34.710Z

Link: CVE-2023-3425

cve-icon Vulnrichment

Updated: 2024-08-02T06:55:03.431Z

cve-icon NVD

Status : Modified

Published: 2023-08-25T09:15:08.937

Modified: 2026-02-23T09:16:15.213

Link: CVE-2023-3425

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses