Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-77857
HistoryMay 16, 2022 - 12:00 a.m.

M-Files Server Cross-Site Scripting Vulnerability

2022-05-1600:00:00
China National Vulnerability Database
www.cnvd.org.cn
6
m-files server
cross-site scripting
security vulnerability
administrative tool

EPSS

0.001

Percentile

22.7%

M-Files Server is a server for the M-Files system from M-Files, Inc. A security vulnerability exists in versions of M-Files Server prior to 22.2.11051.0, which stems from an administrative tool that allows the use of scripts to store configuration data that can then be run by other library administrators. An attacker could use this vulnerability to execute cross-site scripting attacks.

EPSS

0.001

Percentile

22.7%

Related for CNVD-2022-77857