Vulnerabilities > Claris

DATE CVE VULNERABILITY TITLE RISK
2021-11-22 CVE-2021-44147 XXE vulnerability in Claris Filemaker PRO and Filemaker Server
An XML External Entity issue in Claris FileMaker Pro and Server (including WebDirect) before 19.4.1 allows a remote attacker to disclose local files via a crafted XML/Excel document and perform server-side request forgery attacks.
local
low complexity
claris CWE-611
5.5
2020-02-11 CVE-2014-8347 Improper Authentication vulnerability in Claris Filemaker PRO and Filemaker PRO Advanced
An Authentication Bypass vulnerability exists in the MatchPasswordData function in DBEngine.dll in Filemaker Pro 13.03 and Filemaker Pro Advanced 12.04, which could let a malicious user obtain elevated privileges.
local
low complexity
claris CWE-287
7.8