CVE-2025-2159 | M-Files Admin prior 25.3.14681.7 on Windows Desktop UI cross site scripting
A vulnerability classified as problematic has been found in M-Files Admin on Windows. Affected is an unknown function of the component Desktop UI. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2025-2159. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.