Learn about CVE-2019-3489, an unauthenticated file upload vulnerability in Micro Focus Content Manager versions 9.1, 9.2, and 9.3. Find out the impact, affected systems, exploitation mechanism, and mitigation steps.
A security flaw in the Web Client module of Micro Focus Content Manager versions 9.1, 9.2, and 9.3 allows unauthorized attackers to upload files to any location on the server.
Understanding CVE-2019-3489
This CVE involves an unauthenticated file upload vulnerability in Micro Focus Content Manager versions 9.1, 9.2, and 9.3 when using the ADFS authentication method.
What is CVE-2019-3489?
The Impact of CVE-2019-3489
Technical Details of CVE-2019-3489
The following technical details provide insight into the vulnerability.
Vulnerability Description
Affected Systems and Versions
Exploitation Mechanism
Mitigation and Prevention
Protect your systems from CVE-2019-3489 with the following measures.
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates