CVE-2021-41808
2.3
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Exploitability: 0.8 / Impact: 1.4
Source: NVD
Description
In M-Files Server product with versions before 21.11.10775.0, enabling logging of Federated authentication to event log wrote sensitive information to log. Mitigating factors are logging is disabled by default.
Affected (1)
Products: M Files: M Files Server
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 21.11.10775.0 |
References (3)
Source: security@m-files.com
Source: security@m-files.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.