CVE-2014-8347: High severity filemaker pro 20 vulnerability
An Authentication Bypass vulnerability exists in the MatchPasswordData function in DBEngine.dll in Filemaker Pro 13.03 and Filemaker Pro Advanced 12.04, which could let a malicious user obtain elevated privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-8347?
CVE-2014-8347 is classified as a medium severity vulnerability due to its potential for allowing unauthorized access to elevated privileges.
How do I fix CVE-2014-8347?
To mitigate CVE-2014-8347, you should update to the latest versions of FileMaker Pro or FileMaker Pro Advanced that address this vulnerability.
What versions are affected by CVE-2014-8347?
CVE-2014-8347 affects FileMaker Pro version 13.03 and FileMaker Pro Advanced version 12.0.4.0.
What type of vulnerability is CVE-2014-8347?
CVE-2014-8347 is an Authentication Bypass vulnerability in the MatchPasswordData function.
What are the potential consequences of CVE-2014-8347?
The consequence of CVE-2014-8347 is that a malicious user could gain elevated privileges, potentially compromising sensitive information and controls.