Vulnerabilities > Microfocus > Filr

DATE CVE VULNERABILITY TITLE RISK
2023-12-06 CVE-2023-32268 Insufficiently Protected Credentials vulnerability in Microfocus Filr
Exposure of Proxy Administrator Credentials An authenticated administrator equivalent Filr user can access the credentials of proxy administrators.
network
low complexity
microfocus CWE-522
7.2
2022-11-21 CVE-2022-38755 Unspecified vulnerability in Microfocus Filr
A vulnerability has been identified in Micro Focus Filr in versions prior to 4.3.1.1.
network
low complexity
microfocus
5.3
2020-12-11 CVE-2020-25838 Unspecified vulnerability in Microfocus Filr
Unauthorized disclosure of sensitive information vulnerability in Micro Focus Filr product.
network
low complexity
microfocus
6.5
2020-11-17 CVE-2020-25832 Cross-site Scripting vulnerability in Microfocus Filr 4.2.1
Reflected Cross Site scripting vulnerability on Micro Focus Filr product, affecting version 4.2.1.
network
low complexity
microfocus CWE-79
5.4
2019-02-20 CVE-2019-3475 Improper Privilege Management vulnerability in Microfocus Filr 3.0
A local privilege escalation vulnerability in the famtd component of Micro Focus Filr 3.0 allows a local attacker authenticated as a low privilege user to escalate to root.
local
low complexity
microfocus CWE-269
7.8
2019-02-20 CVE-2019-3474 Path Traversal vulnerability in Microfocus Filr 3.0
A path traversal vulnerability in the web application component of Micro Focus Filr 3.x allows a remote attacker authenticated as a low privilege user to download arbitrary files from the Filr server.
network
low complexity
microfocus CWE-22
6.5