Description
Lack of protection against brute force attacks in M-Files Server before 23.12.13205.0 allows an attacker unlimited authentication attempts, potentially compromising targeted M-Files user accounts by guessing passwords.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Update to patched version.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-59111 | Lack of protection against brute force attacks in M-Files Server before 23.12.13205.0 allows an attacker unlimited authentication attempts, potentially compromising targeted M-Files user accounts by guessing passwords. |
References
History
Mon, 23 Feb 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 22 Nov 2024 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 28 Aug 2024 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 28 Aug 2024 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Lack of protection against brute force attacks in M-Files Server before 23.12.13205.0 allows an attacker unlimited authentication attempts, potentially compromising targeted M-Files user accounts by guessing passwords. | Lack of protection against brute force attacks in M-Files Server before 23.12.13205.0 allows an attacker unlimited authentication attempts, potentially compromising targeted M-Files user accounts by guessing passwords. |
| References |
|
Status: PUBLISHED
Assigner: M-Files Corporation
Published:
Updated: 2026-02-23T10:07:53.064Z
Reserved: 2023-12-18T08:33:42.158Z
Link: CVE-2023-6912
No data.
Status : Modified
Published: 2023-12-20T10:15:08.703
Modified: 2026-02-23T11:16:15.177
Link: CVE-2023-6912
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD