CVE-2022-38755: Filr Remote unauthenticated user enumeration for versions prior to 4.3.1.1
Published Nov 21, 2022
·Updated
A vulnerability has been identified in Micro Focus Filr in versions prior to 4.3.1.1. The vulnerability could be exploited to allow a remote unauthenticated attacker to enumerate valid users of the system. Remote unauthenticated user enumeration. This issue affects: Micro Focus Filr versions prior to 4.3.1.1.
Affected Software
1 affected component
MicroFocus Filr<4.3.1.1
Remediation
Information
Micro Focus has made the following mitigation information available to resolve the vulnerability for the impacted versions of Micro Focus Filr:
Please update to Micro Focus Filr 4.3.1.1 or newer
Event History
Nov 21, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-38755.
2
What is the affected software?
The affected software is Micro Focus Filr versions prior to 4.3.1.1.
3
What is the severity level of CVE-2022-38755?
The severity level of CVE-2022-38755 is medium with a severity value of 5.3.
4
How can this vulnerability be exploited?
This vulnerability could be exploited to allow a remote unauthenticated attacker to enumerate valid users of the system.
5
How can I fix CVE-2022-38755?
To fix CVE-2022-38755, update Micro Focus Filr to version 4.3.1.1 or later.