PT-2022-24553 · Micro Focus · Micro Focus Filr

Christopher Haller

+1

·

Published

2022-11-21

·

Updated

2022-11-23

·

CVE-2022-38755

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Micro Focus Filr versions prior to 4.3.1.1
Description A vulnerability has been identified that could be exploited to allow a remote unauthenticated attacker to enumerate valid users of the system, enabling remote unauthenticated user enumeration.
Recommendations For Micro Focus Filr versions prior to 4.3.1.1, update to version 4.3.1.1 or later to resolve the issue. As a temporary workaround, consider restricting access to the system to minimize the risk of exploitation.

Fix

Related Identifiers

CVE-2022-38755

Affected Products

Micro Focus Filr