CVE-2014-5322: XSS
Cross-site scripting (XSS) vulnerability in the Instant Web Publish function in FileMaker Pro before 13 and Pro Advanced before 13 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this vulnerability exists because of an incorrect fix for CVE-2013-3640.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-5322?
CVE-2014-5322 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2014-5322?
To fix CVE-2014-5322, you should upgrade to FileMaker Pro or Pro Advanced version 13 or later.
What types of systems are affected by CVE-2014-5322?
CVE-2014-5322 affects FileMaker Pro versions prior to 13 and FileMaker Pro Advanced versions prior to 13.
Who is affected by CVE-2014-5322?
Users of FileMaker Pro and FileMaker Pro Advanced versions 12 or earlier are affected by CVE-2014-5322.
What can attackers do with CVE-2014-5322?
Attackers can potentially inject arbitrary web scripts or HTML into affected systems, leading to cross-site scripting vulnerabilities.