VYPR
Medium severity5.4NVD Advisory· Published Dec 16, 2025· Updated Jun 17, 2026

CVE-2025-46296

CVE-2025-46296

Description

An authorization bypass vulnerability in FileMaker Server Admin Console allowed administrator roles with minimal privileges to access administrative features such as viewing license details and downloading application logs. This vulnerability has been fully addressed in FileMaker Server 22.0.4.

Affected products

3
  • cpe:2.3:a:claris:filemaker_server:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:claris:filemaker_server:*:*:*:*:*:*:*:*range: <22.0.4
    • (no CPE)range: 22.0.4
    • (no CPE)range: unspecified

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.