An authorization bypass vulnerability in FileMaker Server Admin Console allowed administrator roles with minimal privileges to access administrative features such as viewing license details and downloading application logs. This vulnerability has been fully addressed in FileMaker Server 22.0.4.
Metrics
Affected Vendors & Products
References
History
Wed, 17 Dec 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Claris
Claris filemaker Server |
|
| Vendors & Products |
Claris
Claris filemaker Server |
Tue, 16 Dec 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 16 Dec 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-285 | |
| Metrics |
cvssV3_1
|
Tue, 16 Dec 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authorization bypass vulnerability in FileMaker Server Admin Console allowed administrator roles with minimal privileges to access administrative features such as viewing license details and downloading application logs. This vulnerability has been fully addressed in FileMaker Server 22.0.4. | |
| References |
|
Status: PUBLISHED
Assigner: apple
Published: 2025-12-16T18:07:37.678Z
Updated: 2025-12-16T19:25:12.162Z
Reserved: 2025-04-22T21:13:49.959Z
Link: CVE-2025-46296
Updated: 2025-12-16T19:22:20.491Z
Status : Received
Published: 2025-12-16T18:16:12.580
Modified: 2025-12-16T20:15:48.307
Link: CVE-2025-46296
No data.