CVE-2023-3405: M-Files Server

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

Unchecked parameter value in M-Files Server in versions before 23.6.12695.3 (excluding 23.2 SR2 and newer) allows anonymous user to cause denial of service

Affected products

  • M-Files M-Files Server: before 23.6.12695.3 (fixed in 23.6.12695.3)

Published 2023-06-27. Last modified 2026-06-17.