Zimbra

Collaboration

54 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.28%
  • Veröffentlicht 02.07.2021 19:15:08
  • Zuletzt bearbeitet 21.11.2024 06:12:03

An issue was discovered in ZmMailMsgView.js in the Calendar Invite component in Zimbra Collaboration Suite 8.8.x before 8.8.15 Patch 23. An attacker could place HTML containing executable JavaScript inside element attributes. This markup becomes unes...

  • EPSS 1.06%
  • Veröffentlicht 02.07.2021 19:15:08
  • Zuletzt bearbeitet 21.11.2024 06:12:03

An issue was discovered in Zimbra Collaboration Suite 8.8 before 8.8.15 Patch 23 and 9.0 before 9.0.0 Patch 16. An XSS vulnerability exists in the login component of Zimbra Web Client, in which an attacker can execute arbitrary JavaScript by adding e...

  • EPSS 0.84%
  • Veröffentlicht 02.07.2021 19:15:08
  • Zuletzt bearbeitet 21.11.2024 06:11:14

An open redirect vulnerability exists in the /preauth Servlet in Zimbra Collaboration Suite through 9.0. To exploit the vulnerability, an attacker would need to have obtained a valid zimbra auth token or a valid preauth token. Once the token is obtai...

  • EPSS 0.84%
  • Veröffentlicht 17.12.2020 04:15:12
  • Zuletzt bearbeitet 21.11.2024 05:26:48

In Zimbra Collaboration Suite Network Edition versions < 9.0.0 P10 and 8.8.15 P17, there exists an XXE vulnerability in the saml consumer store extension, which is vulnerable to XXE attacks. This has been fixed in Zimbra Collaboration Suite Network e...