← Back

CVE-2019-3489

nvd nist
Published: Apr 1, 2019Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

An unauthenticated file upload vulnerability has been identified in the Web Client component of Micro Focus Content Manager 9.1, 9.2, and 9.3 when configured to use the ADFS authentication method. The vulnerability could be exploited by an unauthenticated remote attacker to upload content to arbitrary locations on the Content Manager server.

Affected (1)

1 product
Content Manager
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 9.1 to 9.3

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.