CVE-2024-0563

MEDIUM

M-Files Server < 24.2 - Unauthenticated Denial of Service

Title source: llm
STIX 2.1

Description

Denial of service condition in M-Files Server in versions before 24.2 (excluding 23.2 SR7 and 23.8 SR5) allows anonymous user to cause denial of service against other anonymous users.

Scores

CVSS v3 4.3
EPSS 0.0071
EPSS Percentile 48.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-770
Status published
Products (2)
m-files/m-files_server < 23.2.12340.6
m-files/m-files_server 23.2.12340.6 - 23.8.12892.17
Published Feb 23, 2024
Tracked Since Feb 18, 2026