A privilege escalation issue existed in FileMaker Server, potentially exposing sensitive information to front-end websites when signed in to the Admin Console with an administrator role. This issue has been fixed in FileMaker Server 20.3.1 by reducing the information sent in requests.
Vendor | Product | Version | CPE |
---|---|---|---|
claris | filemaker_server | * | cpe:2.3:a:claris:filemaker_server:*:*:*:*:*:*:*:* |
[
{
"vendor": "Claris",
"product": "FileMaker Server",
"versions": [
{
"version": "unspecified",
"status": "affected",
"lessThan": "20.3.1",
"versionType": "custom"
}
]
}
]