Under rare conditions, the effective permissions of an object might be incorrectly calculated if the object has a specific configuration of metadata-driven permissions in M-Files Server versions 23.9, 23.10, and 23.11 before 23.11.13168.7, potentially enabling unauthorized access to the object.
References
Link | Resource |
---|---|
https://www.m-files.com/about/trust-center/security-advisories/cve-2023-6239/ | Broken Link |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: M-Files Corporation
Published: 2023-11-28T14:07:20.877Z
Updated: 2023-11-30T15:44:48.463Z
Reserved: 2023-11-21T12:03:50.773Z
Link: CVE-2023-6239
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-11-28T14:15:07.697
Modified: 2023-12-04T19:06:20.213
Link: CVE-2023-6239
JSON object: View
Redhat Information
No data.
CWE