I was just about to point out the known-plaintext scenario of this setup when the server is compromised, but apparently AES is immune to this attack. [1]
[1]: http://en.wikipedia.org/wiki/Known-plaintext_attack#Present_...
[1]: http://en.wikipedia.org/wiki/Known-plaintext_attack#Present_...