Medium severity4.3NVD Advisory· Published Dec 18, 2025· Updated Jun 17, 2026
CVE-2025-14318
CVE-2025-14318
Description
Improper access checks in M-Files Server before 25.12.15491.7 allows users to download files through M-Files Web using Web Companion despite Print and Download Prevention module being enabled.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:m-files:m-files_server:*:*:*:*:-:*:*:*+ 1 more
- cpe:2.3:a:m-files:m-files_server:*:*:*:*:-:*:*:*range: <25.12.15491.7
- (no CPE)range: <25.12.15491.7
- M-Files Corporation/M-Files Serverv5Range: 0
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.