216.73.216.6

CVE-2025-2091

· Published 16/06/2025 09:15 · Modified 16/06/2025 12:32

Labels: CVE-2025-2091 2025-06-16CVE-2025-2091CWE-601[email protected]

Essential information

Published
16/06/2025 09:15
Modified
16/06/2025 12:32
Author
Creator
CVSS
4.8 MEDIUM (v3) 4.8 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

An open redirection vulnerability in M-Files mobile applications for Android and iOS prior to version 25.6.0 allows attackers to use maliciously crafted PDF files to trick other users into making requests to untrusted URLs.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
m-files / m-files mobile applications cpe:2.3:a:m-files:m-files_mobile_applications:<25.6.0:*:*:*:*:*:*:*

References