Security Advisory

CVE-2021-41807

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-01-18 16:51:50
Last updated 2026-02-23 07:49:22
Assigner M-Files Corporation
State PUBLISHED

Description

Lack of rate limiting in M-Files Server and M-Files Web products with versions before 21.12.10873.0 in certain type of user accounts allows unlimited amount of attempts and therefore makes brute-forcing login accounts easier.