An XML External Entity issue in Claris FileMaker Pro and Server (including WebDirect) before 19.4.1 allows a remote attacker to disclose local files via a crafted XML/Excel document and perform server-side request forgery attacks.
CVE ID | Name | Status | References |
---|---|---|---|
CVE-2021-44147 | An XML External Entity issue in Claris FileMaker Pro and Server (including WebDirect) before 19.4.1 allows a remote attacker to disclose local files via a crafted XML/Excel document and perform server-side request forgery attacks. |
Assigned (20211122) | MISC:https://davidhamann.de/2021/11/18/filemaker-xxe-vulnerability/ | MISC:https://support.claris.com/s/answerview?anum=000035751 |
Page created: