Vulnerability Details CVE-2025-0648
Unexpected server crash in database driver in M-Files Server before 25.1.14445.5 and before 24.8 LTS SR3 allows a highly privileged attacker to cause denial of service via configuration change.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 24.8%
CVSS Severity
CVSS v3 Score 4.9
Products affected by CVE-2025-0648
-
cpe:2.3:a:m-files:m-files_server:-
-
cpe:2.3:a:m-files:m-files_server:23.2.12340.6
-
cpe:2.3:a:m-files:m-files_server:23.8.12892.17
-
cpe:2.3:a:m-files:m-files_server:23.8.12892.23
-
cpe:2.3:a:m-files:m-files_server:24.11.14245.5
-
cpe:2.3:a:m-files:m-files_server:24.2.13421.15
-
cpe:2.3:a:m-files:m-files_server:24.8.13981.13
-
cpe:2.3:a:m-files:m-files_server:24.9.14055.3