Description
An unauthenticated file upload vulnerability has been identified in the Web Client component of Micro Focus Content Manager 9.1, 9.2, and 9.3 when configured to use the ADFS authentication method. The vulnerability could be exploited by an unauthenticated remote attacker to upload content to arbitrary locations on the Content Manager server.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-13127 | An unauthenticated file upload vulnerability has been identified in the Web Client component of Micro Focus Content Manager 9.1, 9.2, and 9.3 when configured to use the ADFS authentication method. The vulnerability could be exploited by an unauthenticated remote attacker to upload content to arbitrary locations on the Content Manager server. |
References
| Link | Providers |
|---|---|
| https://softwaresupport.softwaregrp.com/doc/KM03359911 |
|
History
No history.
Status: PUBLISHED
Assigner: microfocus
Published:
Updated: 2024-08-04T19:12:09.499Z
Reserved: 2018-12-31T00:00:00.000Z
Link: CVE-2019-3489
No data.
Status : Modified
Published: 2019-04-01T20:29:00.800
Modified: 2024-11-21T04:42:07.853
Link: CVE-2019-3489
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD