M-Files Server
cpe:2.3:a:m-files:m-files_server:*:*:*:*:*:*:*
- < 25.12
A vulnerability exists in M-Files Server versions prior to 25.12, where improper access checks allow users to download files via M-Files Web Companion. This occurs despite the presence of the Print and Download Prevention module, which is intended to block such actions.
Exploitation of this vulnerability bypasses the Print and Download Prevention module, allowing unauthorized file downloads through M-Files Web Companion.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.