Metrics
Affected Vendors & Products
No advisories yet.
Solution
Update to the latest version.
Workaround
No workaround available on affected versions.
Tue, 06 Jan 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:m-files:m-files_server:*:*:*:*:-:*:*:* | |
| Metrics |
cvssV3_1
|
Fri, 19 Dec 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
M-files
M-files m-files Server M-files server |
|
| Vendors & Products |
M-files
M-files m-files Server M-files server |
Fri, 19 Dec 2025 07:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper access checks in M-Files Server before 25.12 allows users to download files through M-Files Web using Web Companion despite Print and Download Prevention module being enabled. | Improper access checks in M-Files Server before 25.12.15491.7 allows users to download files through M-Files Web using Web Companion despite Print and Download Prevention module being enabled. |
Thu, 18 Dec 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 18 Dec 2025 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper access checks in M-Files Server before 25.12 allows users to download files through M-Files Web using Web Companion despite Print and Download Prevention module being enabled. | |
| Title | Improper access validation in M-Files Server | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: M-Files Corporation
Published:
Updated: 2026-01-07T13:13:12.247Z
Reserved: 2025-12-09T10:22:36.277Z
Link: CVE-2025-14318
Updated: 2025-12-18T15:02:07.497Z
Status : Analyzed
Published: 2025-12-18T08:15:49.653
Modified: 2026-01-06T19:48:49.100
Link: CVE-2025-14318
No data.
OpenCVE Enrichment
Updated: 2025-12-19T09:16:17Z