Claris Filemaker Pro vulnerabilities
4 known vulnerabilities affecting claris/filemaker_pro.
Total CVEs
4
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2014-8347P3HIGHCVSS 7.8PoCv13.032020-02-11
CVE-2014-8347 [HIGH] CWE-287 CVE-2014-8347: An Authentication Bypass vulnerability exists in the MatchPasswordData function in DBEngine.dll in F
An Authentication Bypass vulnerability exists in the MatchPasswordData function in DBEngine.dll in Filemaker Pro 13.03 and Filemaker Pro Advanced 12.04, which could let a malicious user obtain elevated privileges.
nvd
CVE-2026-86938P3HIGHCVSS 7.3fixed in 26.0.32026-09-23
CVE-2026-86938 [HIGH] CWE-639 CVE-2026-86938: A DLL hijacking vulnerability in the FileMaker Pro installer for Windows allowed a local user to exe
A DLL hijacking vulnerability in the FileMaker Pro installer for Windows allowed a local user to execute arbitrary code with elevated administrator privileges by placing a malicious DLL file in the installer directory. This vulnerability is addressed in FileMaker Pro version 26.0.3.
nvd
CVE-2023-42920P3HIGHCVSS 7.8fixed in 20.2≥ unspecified, < 20.22024-03-19
CVE-2023-42920 [HIGH] CWE-427 CVE-2023-42920: Claris International has fixed a dylib hijacking vulnerability in the FileMaker Pro.app and Claris P
Claris International has fixed a dylib hijacking vulnerability in the FileMaker Pro.app and Claris Pro.app versions on macOS.
nvd
CVE-2021-44147P4MEDIUMCVSS 5.5fixed in 19.4.12021-11-22
CVE-2021-44147 [MEDIUM] CWE-611 CVE-2021-44147: An XML External Entity issue in Claris FileMaker Pro and Server (including WebDirect) before 19.4.1
An XML External Entity issue in Claris FileMaker Pro and Server (including WebDirect) before 19.4.1 allows a remote attacker to disclose local files via a crafted XML/Excel document and perform server-side request forgery attacks.
nvd