CVE-2019-3474: Micro Focus Filr

Medium severity, CVSS 6.5. EPSS: 9% chance of exploitation in the next 30 days.

A path traversal vulnerability in the web application component of Micro Focus Filr 3.x allows a remote attacker authenticated as a low privilege user to download arbitrary files from the Filr server. This vulnerability affects all versions of Filr 3.x prior to Security Update 6.

Affected products

Published 2019-02-20. Last modified 2026-06-17.