CVE-2014-5321
FileMaker Pro before 13 and Pro Advanced before 13 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. NOTE: this vulnerability exists because of an incorrect fix for CVE-2013-2319.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0014 (0.1%)
Percentile: 33.1%
EPSS: 2026-05-06
Affects
filemaker:filemaker_profilemaker:filemaker_pro_advancedTechnical description
FileMaker Pro before 13 and Pro Advanced before 13 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. NOTE: this vulnerability exists because of an incorrect fix for CVE-2013-2319.
Published: 9/22/2014, 1:55:05 AM
Last modified: 5/6/2026, 10:30:45 PM