← Back

CVE-2023-42955

nvd nist
Published: May 14, 2024Modified: Dec 10, 2024

JSON object

Loading...
4.9
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Exploitability: 1.2 / Impact: 3.6
Source: NVD

Description

Claris International has successfully resolved an issue of potentially exposing password information to front-end websites when signed in to the Admin Console with an administrator role. This issue has been fixed in FileMaker Server 20.3.1 by eliminating the send of Admin Role passwords in the Node.js socket.

Affected (1)

1 product
Filemaker Server
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 20.3.1

Timeline

No history available yet.