Skip to content

CVE-2014-5321

FileMaker Pro before 13 and Pro Advanced before 13 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. NOTE: this vulnerability exists because of an incorrect fix for CVE-2013-2319.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.0014 (0.1%)
Percentile: 33.1%
EPSS: 2026-05-06

Affects

filemaker:filemaker_profilemaker:filemaker_pro_advanced

Technical description

FileMaker Pro before 13 and Pro Advanced before 13 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. NOTE: this vulnerability exists because of an incorrect fix for CVE-2013-2319.

Published: 9/22/2014, 1:55:05 AM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam