CVE-2019-11397: Microsoft .NET Framework
Medium severity, CVSS 6.5. EPSS: 5.5% chance of exploitation in the next 30 days.
GetFile.aspx in Rapid4 RapidFlows Enterprise Application Builder 4.5M.23 (when used with .NET Framework 4.5) allows Local File Inclusion via the FileDesc parameter.
Affected products
- Microsoft .NET Framework: version 4.5 only
- Rapidflows RAPID4: version 4.5m.23 only
Published 2019-05-14. Last modified 2026-06-17.