An XML External Entity issue in Claris FileMaker Pro and Server (including WebDirect) prior to 19.4.1 allows a remote malicious user to disclose local files via a crafted XML/Excel document and perform server-side request forgery attacks.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
claris filemaker pro |
||
claris filemaker server |