CVE-2019-3474: Path traversal vulnerability in Filr web application
A path traversal vulnerability in the web application component of Micro Focus Filr 3.x allows a remote attacker authenticated as a low privilege user to download arbitrary files from the Filr server. This vulnerability affects all versions of Filr 3.x prior to Security Update 6.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-3474?
CVE-2019-3474 is a path traversal vulnerability in the web application component of Micro Focus Filr 3.x that allows a remote attacker authenticated as a low privilege user to download arbitrary files from the Filr server.
Which versions of Filr are affected by CVE-2019-3474?
CVE-2019-3474 affects all versions of Filr 3.x prior to Security Update 6.
How severe is CVE-2019-3474?
CVE-2019-3474 has a severity score of 6.5 (medium).
How can I fix CVE-2019-3474?
To fix CVE-2019-3474, you should install Security Update 6 for Filr 3.x.
Where can I find more information about CVE-2019-3474?
You can find more information about CVE-2019-3474 at the following links: [1] [2] [3]