5.4
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Description
An authorization bypass vulnerability in FileMaker Server Admin Console allowed administrator roles with minimal privileges to access administrative features such as viewing license details and downloading application logs. This vulnerability has been fully addressed in FileMaker Server 22.0.4.
Basic Information
ID
CVE-2025-46296
Source
apple
Published
Dec 16, 2025 at 18:07
Modified
Dec 16, 2025 at 19:25
Affected Product
Vendor
Claris
Product
FileMaker Server
Version
unspecified
Affected Versions
Claris FileMaker Server unspecified