Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-42955

Опубликовано: 14 мая 2024
Источник: nvd
CVSS3: 4.9
CVSS3: 6.1
EPSS Низкий

Описание

Claris International has successfully resolved an issue of potentially exposing password information to front-end websites when signed in to the Admin Console with an administrator role. This issue has been fixed in FileMaker Server 20.3.1 by eliminating the send of Admin Role passwords in the Node.js socket.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:claris:filemaker_server:*:*:*:*:*:*:*:*
Версия до 20.3.1 (исключая)

EPSS

Процентиль: 41%
0.00188
Низкий

4.9 Medium

CVSS3

6.1 Medium

CVSS3

Дефекты

CWE-522
CWE-257

Связанные уязвимости

CVSS3: 6.1
github
больше 1 года назад

Claris International has successfully resolved an issue of potentially exposing password information to front-end websites when signed in to the Admin Console with an administrator role. This issue has been fixed in FileMaker Server 20.3.1 by eliminating the send of Admin Role passwords in the Node.js socket.

EPSS

Процентиль: 41%
0.00188
Низкий

4.9 Medium

CVSS3

6.1 Medium

CVSS3

Дефекты

CWE-522
CWE-257