CVE-2026-43685
7.2
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.2 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)
Description
A Remote Code Execution vulnerability in Claris FileMaker Cloud allowed a user with Admin Console privileges to inject arbitrary operating system commands through unsanitized input in the External ODBC Data Source connection test feature. This issue is fixed in FileMaker Cloud 2.22.0.5.
Affected (1)
Products: Claris: Filemaker Cloud
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.22.0.5 |
References (1)
Source: product-security@apple.com
Vendor Advisory
Timeline
No history available yet.