CVE-2025-46296

A

n authorization bypass vulnerability in FileMaker Server Admin Console allowed administrator roles with minimal privileges to access administrative features such as viewing license details and downloading application logs. This vulnerability has been fully addressed in FileMaker Server 22.0.4.

Configurations

Configuration 1 (hide)

cpe:2.3:a:claris:filemaker_server:*:*:*:*:*:*:*:*

History

23 Dec 2025, 14:45

Type Values Removed Values Added
First Time Claris filemaker Server
Claris
CPE cpe:2.3:a:claris:filemaker_server:*:*:*:*:*:*:*:*
References () https://support.claris.com/s/answerview?anum=000049056&language=en_US - () https://support.claris.com/s/answerview?anum=000049056&language=en_US - Vendor Advisory

18 Dec 2025, 15:08

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-16 18:16

Updated : 2025-12-23 14:45


NVD link : CVE-2025-46296

Mitre link : CVE-2025-46296

CVE.ORG link : CVE-2025-46296


JSON object : View

Products Affected
CWE
CWE-285

Improper Authorization