İçeriğe atla
Noroxi

synacor kayıtları

synacor üreticisine ait 94 yayımlanmış kayıt.

Tüm kayıtlar

94 kayıt
  • mailboxd component in Synacor Zimbra Collaboration Suite 8.7.x before 8.7.11p10 has an XML External Entity injection (XXE) vulnerability, as

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    synacor · zimbra collaboration suite29 May 2019

  • The postjournal service in Zimbra Collaboration (ZCS) before 8.8.15 Patch 46, 9 before 9.0.0 Patch 41, 10 before 10.0.9, and 10.1 before 10.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    synacor · zimbra collaboration suite2 Eki 2024

  • An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15 and 9.0.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %95

    synacor · zimbra collaboration suite25 Eyl 2022

  • Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %92

    synacor · zimbra collaboration suite12 Ağu 2022

  • Zimbra Collaboration Suite (ZCS) before 8.8.15 Patch 7 allows SSRF when WebEx zimlet is installed and zimlet JSP is enabled.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %84

    synacor · zimbra collaboration suite18 Şub 2020

  • Cross Site Scripting vulnerability in Zimbra ZCS v.8.8.15 allows a remote authenticated attacker to execute arbitrary code via a crafted scr

    KritikCVSS 9,0KEVSilahlaştırılmışEPSS %77

    synacor · zimbra collaboration suite6 Tem 2023

  • Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it.

    YüksekCVSS 7,2KEVSilahlaştırılmışEPSS %99

    synacor · zimbra collaboration suite20 Nis 2022

  • Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 allows an unauthenticated attacker to inject arbitrary memcache commands into a targeted insta

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %85

    synacor · zimbra collaboration suite20 Nis 2022

  • Zimbra Collaboration Suite before 8.6 patch 13, 8.7.x before 8.7.11 patch 10, and 8.8.x before 8.8.10 patch 7 or 8.8.x before 8.8.11 patch 3

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %81

    synacor · zimbra collaboration suite30 Nis 2019

  • A Local File Inclusion (LFI) vulnerability exists in the Webmail Classic UI of Zimbra Collaboration (ZCS) 10.0 and 10.1 because of improper

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %49

    synacor · zimbra collaboration suite22 Ara 2025

  • CVE-2023-37580
    69Bu hafta

    Zimbra Collaboration (ZCS) 8 before 8.8.15 Patch 41 allows XSS in the Zimbra Classic Web Client.

    OrtaCVSS 6,1KEVSilahlaştırılmışEPSS %49

    synacor · zimbra collaboration suite31 Tem 2023

  • CVE-2026-73570
    69Bu hafta

    A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.20 when the optional zimbra-snmp package is installed

    YüksekCVSS 8,9KEVSilahlaştırılmışEPSS %12

    synacor · zimbra collaboration suite13 Ağu 2026

  • CVE-2022-24682
    63Bu hafta

    An issue was discovered in the Calendar feature in Zimbra Collaboration Suite 8.8.x before 8.8.15 patch 30 (update 1), as exploited in the w

    OrtaCVSS 6,1KEVSilahlaştırılmışEPSS %31

    synacor · zimbra collaboration suite9 Şub 2022

  • CVE-2018-6882
    63Bu hafta

    Cross-site scripting (XSS) vulnerability in the ZmMailMsgView.getAttachmentLinkHtml function in Zimbra Collaboration Suite (ZCS) before 8.7

    OrtaCVSS 6,1KEVSilahlaştırılmışEPSS %30

    synacor · zimbra collaboration suite27 Mar 2018

  • CVE-2025-66376
    60Bu hafta

    Zimbra Collaboration (ZCS) 10 before 10.0.18 and 10.1 before 10.1.13 allows Classic UI stored XSS via Cascading Style Sheets (CSS) @import d

    OrtaCVSS 6,1KEVSilahlaştırılmışEPSS %20

    synacor · zimbra collaboration suite5 Oca 2026

  • CVE-2022-27926
    59Planlayın

    A reflected cross-site scripting (XSS) vulnerability in the /public/launchNewWindow.jsp component of Zimbra Collaboration (aka ZCS) 9.0 allo

    OrtaCVSS 6,1KEVSilahlaştırılmışEPSS %18

    synacor · zimbra collaboration suite20 Nis 2022

  • CVE-2025-48700
    55Planlayın

    An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15 and 9.0 and 10.0 and 10.1.

    OrtaCVSS 6,1KEVSilahlaştırılmışEPSS %2

    synacor · zimbra collaboration suite23 Haz 2025

  • CVE-2025-27915
    52Planlayın

    An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0 and 10.1.

    OrtaCVSS 5,4KEVSilahlaştırılmışEPSS %4

    synacor · zimbra collaboration suite12 Mar 2025

  • CVE-2013-7091
    46Planlayın

    Directory traversal vulnerability in /res/I18nMsg,AjxMsg,ZMsg,ZmMsg,AjxKeys,ZmKeys,ZdMsg,Ajx%20TemplateMsg.js.zgz in Zimbra 7.2.2 and 8.0.2

    OrtaCVSS 5,0SilahlaştırılmışEPSS %86

    synacor · zimbra collaboration suite13 Ara 2013

  • CVE-2025-25064
    46Planlayın

    SQL injection vulnerability in the ZimbraSync Service SOAP endpoint in Zimbra Collaboration 10.0.x before 10.0.12 and 10.1.x before 10.1.4 d

    YüksekCVSS 8,8Kavram kanıtıEPSS %37

    synacor · zimbra collaboration suite3 Şub 2025

  • CVE-2024-50599
    42Planlayın

    A reflected Cross-Site Scripting (XSS) vulnerability has been identified in Zimbra Collaboration Suite (ZCS) 8.8.15, affecting one of the we

    OrtaCVSS 6,1İstismar yokEPSS %61

    synacor · zimbra collaboration suite7 Kas 2024

  • CVE-2019-6980
    40Planlayın

    Synacor Zimbra Collaboration Suite 8.7.x through 8.8.11 allows insecure object deserialization in the IMAP component.

    KritikCVSS 9,8İstismar yokEPSS %4

    synacor · zimbra collaboration suite29 May 2019

  • CVE-2017-6821
    40Planlayın

    Directory traversal vulnerability in Zimbra Collaboration Suite (aka ZCS) before 8.7.6 allows attackers to have unspecified impact via unkno

    KritikCVSS 9,8İstismar yokEPSS %4

    synacor · zimbra collaboration suite23 May 2017

  • CVE-2016-9924
    40Planlayın

    Zimbra Collaboration Suite (ZCS) before 8.7.4 allows remote attackers to conduct XML External Entity (XXE) attacks.

    KritikCVSS 9,8İstismar yokEPSS %3

    synacor · zimbra collaboration suite29 Mar 2017

  • CVE-2017-6813
    40Planlayın

    A service provided by Zimbra Collaboration Suite (ZCS) before 8.7.6 fails to require needed privileges before performing a few requested ope

    KritikCVSS 9,8İstismar yokEPSS %3

    synacor · zimbra collaboration suite23 May 2017