Vulnerability Details CVE-2025-46296
An authorization bypass vulnerability in FileMaker Server Admin Console allowed administrator roles with minimal privileges to access administrative features such as viewing license details and downloading application logs. This vulnerability has been fully addressed in FileMaker Server 22.0.4.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 7.4%
CVSS Severity
CVSS v3 Score 5.4
Products affected by CVE-2025-46296
-
cpe:2.3:a:claris:filemaker_server:-
-
cpe:2.3:a:claris:filemaker_server:19.1.2
-
cpe:2.3:a:claris:filemaker_server:19.2.1
-
cpe:2.3:a:claris:filemaker_server:19.3.1
-
cpe:2.3:a:claris:filemaker_server:19.3.2
-
cpe:2.3:a:claris:filemaker_server:19.4.1
-
cpe:2.3:a:claris:filemaker_server:20.1.1
-
cpe:2.3:a:claris:filemaker_server:20.1.2
-
cpe:2.3:a:claris:filemaker_server:20.2.1
-
cpe:2.3:a:claris:filemaker_server:20.3.1
-
cpe:2.3:a:claris:filemaker_server:20.3.2
-
cpe:2.3:a:claris:filemaker_server:21.0.1
-
cpe:2.3:a:claris:filemaker_server:21.0.2
-
cpe:2.3:a:claris:filemaker_server:21.1.1
-
cpe:2.3:a:claris:filemaker_server:21.1.3
-
cpe:2.3:a:claris:filemaker_server:21.1.4
-
cpe:2.3:a:claris:filemaker_server:21.1.5
-
cpe:2.3:a:claris:filemaker_server:21.1.6
-
cpe:2.3:a:claris:filemaker_server:22.0.1
-
cpe:2.3:a:claris:filemaker_server:22.0.2