VYPR
Medium severity5.4NVD Advisory· Published Nov 28, 2023· Updated Jun 17, 2026

CVE-2023-6239

CVE-2023-6239

Description

Under rare conditions, the effective permissions of an object might be incorrectly calculated if the object has a specific configuration of metadata-driven permissions in M-Files Server versions 23.9, 23.10, and 23.11 before 23.11.13168.7, potentially enabling unauthorized access to the object.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • <23.11.13168.7+ 4 more
    • (no CPE)range: <23.11.13168.7
    • cpe:2.3:a:m-files:m-files_server:*:*:*:*:*:*:*:*range: >=23.11,<23.11.13168.7
    • cpe:2.3:a:m-files:m-files_server:23.9:*:*:*:*:*:*:*
    • cpe:2.3:a:m-files:m-files_server:23.10:*:*:*:*:*:*:*
    • (no CPE)range: 23.9

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.