Записи filemaker
9 опубликованных записей вендора filemaker.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-310 Cryptographic Issues2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
9 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
31Наблюдать | CVE-2000-0123Эксплойта нет | The shopping cart application provided with Filemaker allows remote users to modify sensitive purchase information via hidden form fields.filemaker · filemaker | Высокая7,5 | — | 2,1 % | 1 февр. 2000 г. |
30Наблюдать | CVE-2000-0386Эксплойта нет | FileMaker Pro 5 Web Companion allows remote attackers to send anonymous or forged email.filemaker · filemaker | Высокая7,5 | — | 1,4 % | 2 мая 2000 г. |
30Наблюдать | CVE-2016-1208Эксплойта нет | The server in Apple FileMaker before 14.0.4 on OS X allows remote attackers to read PHP source code via unspecified vectors.apple · mac os x · CWE-200 | Высокая7,5 | — | 1,3 % | 14 мая 2016 г. |
23Наблюдать | CVE-2013-2319Эксплойта нет | FileMaker Pro before 12 and Pro Advanced before 12 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attacfilemaker · filemaker pro · CWE-310 | Средняя5,8 | — | 0,5 % | 10 июн. 2013 г. |
23Наблюдать | CVE-2014-5321Эксплойта нет | FileMaker Pro before 13 and Pro Advanced before 13 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attacfilemaker · filemaker pro · CWE-310 | Средняя5,8 | — | 0,5 % | 21 сент. 2014 г. |
20Наблюдать | CVE-2000-0385Эксплойта нет | FileMaker Pro 5 Web Companion allows remote attackers to bypass Field-Level database security restrictions via the XML publishing or email cfilemaker · filemaker | Средняя5,0 | — | 1,6 % | 2 мая 2000 г. |
18Наблюдать | CVE-2014-5322Эксплойта нет | Cross-site scripting (XSS) vulnerability in the Instant Web Publish function in FileMaker Pro before 13 and Pro Advanced before 13 allows refilemaker · filemaker pro · CWE-79 | Средняя4,3 | — | 1,8 % | 21 сент. 2014 г. |
17Наблюдать | CVE-2007-6104Эксплойта нет | Cross-site scripting (XSS) vulnerability in the Instant Web Publishing feature in FileMaker Pro 7 and 8, Server 7 and 8, and Developer 7 allfilemaker · filemaker · CWE-79 | Средняя4,3 | — | 1,2 % | 23 нояб. 2007 г. |
17Наблюдать | CVE-2013-3640Эксплойта нет | Cross-site scripting (XSS) vulnerability in the Instant Web Publish function in FileMaker Pro before 12 and Pro Advanced before 12 allows refilemaker · filemaker pro · CWE-79 | Средняя4,3 | — | 0,9 % | 10 июн. 2013 г. |
- CVE-2000-012331Наблюдать
The shopping cart application provided with Filemaker allows remote users to modify sensitive purchase information via hidden form fields.
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %filemaker · filemaker1 февр. 2000 г.
- CVE-2000-038630Наблюдать
FileMaker Pro 5 Web Companion allows remote attackers to send anonymous or forged email.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %filemaker · filemaker2 мая 2000 г.
- CVE-2016-120830Наблюдать
The server in Apple FileMaker before 14.0.4 on OS X allows remote attackers to read PHP source code via unspecified vectors.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %apple · mac os x14 мая 2016 г.
- CVE-2013-231923Наблюдать
FileMaker Pro before 12 and Pro Advanced before 12 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attac
СредняяCVSS 5,8Эксплойта нетEPSS 1 %filemaker · filemaker pro10 июн. 2013 г.
- CVE-2014-532123Наблюдать
FileMaker Pro before 13 and Pro Advanced before 13 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attac
СредняяCVSS 5,8Эксплойта нетEPSS 1 %filemaker · filemaker pro21 сент. 2014 г.
- CVE-2000-038520Наблюдать
FileMaker Pro 5 Web Companion allows remote attackers to bypass Field-Level database security restrictions via the XML publishing or email c
СредняяCVSS 5,0Эксплойта нетEPSS 2 %filemaker · filemaker2 мая 2000 г.
- CVE-2014-532218Наблюдать
Cross-site scripting (XSS) vulnerability in the Instant Web Publish function in FileMaker Pro before 13 and Pro Advanced before 13 allows re
СредняяCVSS 4,3Эксплойта нетEPSS 2 %filemaker · filemaker pro21 сент. 2014 г.
- CVE-2007-610417Наблюдать
Cross-site scripting (XSS) vulnerability in the Instant Web Publishing feature in FileMaker Pro 7 and 8, Server 7 and 8, and Developer 7 all
СредняяCVSS 4,3Эксплойта нетEPSS 1 %filemaker · filemaker23 нояб. 2007 г.
- CVE-2013-364017Наблюдать
Cross-site scripting (XSS) vulnerability in the Instant Web Publish function in FileMaker Pro before 12 and Pro Advanced before 12 allows re
СредняяCVSS 4,3Эксплойта нетEPSS 1 %filemaker · filemaker pro10 июн. 2013 г.