PT-2026-56892 · Clarisa · Filemaker Server
CVE-2026-43752
·
Published
2026-07-09
·
Updated
2026-07-10
CVSS v3.1
4.9
Medium
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
FileMaker Server versions prior to 26.0.1
Description
An authenticated administrator can achieve arbitrary code execution on the host system by uploading a malicious file through the Open Source LLM setup feature in the Admin Console.
Recommendations
Update to FileMaker Server version 26.0.1.
Fix
Unrestricted File Upload
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Filemaker Server