Medium severity6.5NVD Advisory· Published Jun 15, 2025· Updated Jun 17, 2026
CVE-2025-5964
CVE-2025-5964
Description
A path traversal issue in the API endpoint in M-Files Server before version 25.6.14925.0 allows an authenticated user to read files in the server.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4<25.6.14925.0+ 2 more
- (no CPE)range: <25.6.14925.0
- cpe:2.3:a:m-files:m-files_server:*:*:*:*:lts:*:*:*range: <24.8.13981.16
- cpe:2.3:a:m-files:m-files_server:*:*:*:*:-:*:*:*range: >=25.3.14681.7,<25.6.14925.0
- M-Files Corporation/M-Files Serverv5Range: 0
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.