← Back

CVE-2019-3474

nvd nist
Published: Feb 20, 2019Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

A path traversal vulnerability in the web application component of Micro Focus Filr 3.x allows a remote attacker authenticated as a low privilege user to download arbitrary files from the Filr server. This vulnerability affects all versions of Filr 3.x prior to Security Update 6.

Affected (6)

Products: Microfocus: Filr
1 product
Filr
Configuration A
6 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Microfocus
Version 3.0
Version 3.0 update_1
Version 3.0 update_2
Version 3.0 update_3
Version 3.0 update_4
Version 3.0 update_5
Running on/withPlatform Versions
Suse
Suse Linux Enterprise Server
Version 11

References (6)

Source: security@opentext.com
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.