← Back

CVE-2019-17087

nvd nist
Published: Dec 11, 2019Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

Unauthorized file download vulnerability in all supported versions of Micro Focus AcuToWeb. The vulnerability could be exploited to enumerate and download files from the filesystem of the system running AcuToWeb, with the privileges of the account AcuToWeb is running under.

Affected (1)

Products: Microfocus: Acutoweb
1 product
Acutoweb
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 10.3

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.