Beveiligingsadvies
CVE-2021-41810
CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations
Beschrijving
Script injection in M-Files Admin versions before 22.2.11051.0, allows executing stored script in admin tool. M-Files Admin tool allows storing configuration data with script which may then get run by another vault administrator. Requires vault admin level authentication and is not remotely exploitable