Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Filemaker

First CVE: Feb 1, 2000Active for: 26 yearsTotal CVEs: 9

FileMaker maintains a focused line of database and rapid-application-development platforms that serve departmental and small-to-medium business deployments, spanning products from FileMaker Pro to FileMaker Server. The recurring vulnerability exposure centers on input-handling and web-interface weaknesses, particularly cross-site scripting and information-disclosure issues that reflect the product's role bridging desktop and web-based data access. Live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
9
Total CVEs
More Total CVEs than 91% of tracked vendors
0.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 4% of tracked vendors
5.8
Avg CVSS Score
Higher Avg CVSS Score than 25% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Filemaker over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 1, 2000
26 years ago
Most Recent CVE
May 14, 2016
3,723 days ago

Products(4 total)

Top CVEs

Signals from CVEs in this vendor scope (9 CVEs).

9 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2014-5321MEDIUM
FileMaker Pro before 13 and Pro Advanced before 13 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensiti
Sep 22, 20145.820NONO
CVE-2000-0123HIGH
The shopping cart application provided with Filemaker allows remote users to modify sensitive purchase information via hidden form fields.
Feb 1, 20007.520NONO
CVE-2016-1208HIGH
The server in Apple FileMaker before 14.0.4 on OS X allows remote attackers to read PHP source code via unspecified vectors.
May 14, 20167.519NONO
CVE-2000-0386HIGH
FileMaker Pro 5 Web Companion allows remote attackers to send anonymous or forged email.
May 2, 20007.519NONO
CVE-2014-5322MEDIUM
Cross-site scripting (XSS) vulnerability in the Instant Web Publish function in FileMaker Pro before 13 and Pro Advanced before 13 allows remote attackers to inject arbitrary web s
Sep 22, 20144.318NONO
CVE-2013-2319MEDIUM
FileMaker Pro before 12 and Pro Advanced before 12 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensiti
Jun 10, 20135.816NONO
CVE-2000-0385MEDIUM
FileMaker Pro 5 Web Companion allows remote attackers to bypass Field-Level database security restrictions via the XML publishing or email capabilities.
May 2, 20005.015NONO
CVE-2013-3640MEDIUM
Cross-site scripting (XSS) vulnerability in the Instant Web Publish function in FileMaker Pro before 12 and Pro Advanced before 12 allows remote attackers to inject arbitrary web s
Jun 10, 20134.314NONO
CVE-2007-6104MEDIUM
Cross-site scripting (XSS) vulnerability in the Instant Web Publishing feature in FileMaker Pro 7 and 8, Server 7 and 8, and Developer 7 allows remote attackers to inject arbitrary
Nov 23, 20074.314NONO
View all 9 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products9 CVEs
67%
33%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network1 (11.1%)
Unknown8 (88.9%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (11.1%)
High0 (0.0%)
Unknown8 (88.9%)
User Interaction
None1 (11.1%)
Unknown8 (88.9%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None1 (11.1%)
Unknown8 (88.9%)

Exploit Exposure

Signals from CVEs in this vendor scope (9 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Filemaker.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Filemaker — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Filemaker's Products

View all 2 CNAs →

Top CWEs