CVE-2014-8347: Claris Filemaker Pro

High severity, CVSS 7.8. EPSS: 1.4% chance of exploitation in the next 30 days.

An Authentication Bypass vulnerability exists in the MatchPasswordData function in DBEngine.dll in Filemaker Pro 13.03 and Filemaker Pro Advanced 12.04, which could let a malicious user obtain elevated privileges.

Affected products

  • Claris Filemaker Pro: version 13.03 only
  • Claris Filemaker Pro Advanced: version 12.0.4.0 only

Published 2020-02-11. Last modified 2026-06-17.