CVE-2019-3474: Micro Focus Filr
Medium severity, CVSS 6.5. EPSS: 9% chance of exploitation in the next 30 days.
A path traversal vulnerability in the web application component of Micro Focus Filr 3.x allows a remote attacker authenticated as a low privilege user to download arbitrary files from the Filr server. This vulnerability affects all versions of Filr 3.x prior to Security Update 6.
Affected products
- Micro Focus Filr: version 3.0 only
Published 2019-02-20. Last modified 2026-06-17.