İçeriğe atla
Noroxi

Zimbra kayıtları

zimbra üreticisine ait 59 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
1 · %1,7
Silahlaştırılmış
2 · %3,4
Pre-auth RCE
6
Düzeltme kaydı olan
%8,5
Yayından KEV’e ortanca
280 gün

Tüm kayıtlar

59 kayıt
  • CVE-2024-27443
    61Bu hafta

    An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0.

    OrtaCVSS 6,1KEVSilahlaştırılmışEPSS %24

    zimbra · collaboration12 Ağu 2024

  • CVE-2024-45518
    41Planlayın

    An issue was discovered in Zimbra Collaboration (ZCS) 10.1.x before 10.1.1, 10.0.x before 10.0.9, 9.0.0 before Patch 41, and 8.8.15 before P

    YüksekCVSS 8,8İstismar yokEPSS %21

    zimbra · collaboration22 Eki 2024

  • CVE-2013-7217
    41Planlayın

    Unspecified vulnerability in Zimbra Collaboration Server 7.2.5 and earlier, and 8.0.x through 8.0.5, has "critical" impact and unspecified v

    KritikCVSS 10,0İstismar yokEPSS %3

    zimbra · collaboration server26 Ara 2013

  • CVE-2021-35209
    40Planlayın

    An issue was discovered in ProxyServlet.java in the /proxy servlet in Zimbra Collaboration Suite 8.8 before 8.8.15 Patch 23 and 9.x before 9

    KritikCVSS 9,8İstismar yokEPSS %3

    zimbra · collaboration2 Tem 2021

  • CVE-2022-32294
    40Planlayın

    Zimbra Collaboration Open Source 8.8.15 does not encrypt the initial-login randomly created password (from the "zmprove ca" command).

    KritikCVSS 9,8İstismar yokEPSS %3

    zimbra · collaboration10 Tem 2022

  • CVE-2023-29381
    39İzleyin

    An issue in Zimbra Collaboration (ZCS) v.8.8.15 and v.9.0 allows a remote attacker to escalate privileges and obtain sensitive information v

    KritikCVSS 9,8İstismar yokEPSS %1

    zimbra · collaboration6 Tem 2023

  • CVE-2023-29382
    39İzleyin

    An issue in Zimbra Collaboration ZCS v.8.8.15 and v.9.0 allows an attacker to execute arbitrary code via the sfdc_preauth.jsp component.

    KritikCVSS 9,8İstismar yokEPSS %1

    zimbra · collaboration6 Tem 2023

  • CVE-2015-6541
    36İzleyin

    Multiple cross-site request forgery (CSRF) vulnerabilities in the Mail interface in Zimbra Collaboration Server (ZCS) before 8.5 allow remot

    YüksekCVSS 8,8Kavram kanıtıEPSS %3

    zimbra · zimbra collaboration server8 Nis 2016

  • CVE-2015-7610
    35İzleyin

    Cross-site request forgery (CSRF) vulnerability in the login form in Zimbra Collaboration Suite (aka ZCS) before 8.6.0 Patch 10, 8.7.x befor

    YüksekCVSS 8,8İstismar yokEPSS %1

    zimbra · zimbra collaboration suite30 May 2018

  • CVE-2023-34193
    35İzleyin

    File Upload vulnerability in Zimbra ZCS 8.8.15 allows an authenticated privileged user to execute arbitrary code and obtain sensitive inform

    YüksekCVSS 8,8İstismar yokEPSS %1

    zimbra · collaboration6 Tem 2023

  • CVE-2022-37393
    32İzleyin

    Zimbra zmslapd arbitrary module load

    YüksekCVSS 7,8SilahlaştırılmışEPSS %2

    zimbra · collaboration16 Ağu 2022

  • CVE-2023-24032
    31İzleyin

    In Zimbra Collaboration Suite through 9.0 and 8.8.15, an attacker (who has initial user access to a Zimbra server instance) can execute comm

    YüksekCVSS 7,8İstismar yokEPSS %1

    zimbra · collaboration15 Haz 2023

  • CVE-2022-41347
    31İzleyin

    An issue was discovered in Zimbra Collaboration (ZCS) 8.8.x and 9.x (e.g., 8.8.15).

    YüksekCVSS 7,8İstismar yokEPSS %0

    zimbra · collaboration25 Eyl 2022

  • CVE-2024-27442
    31İzleyin

    An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0.

    YüksekCVSS 7,8İstismar yokEPSS %0

    zimbra · collaboration12 Ağu 2024

  • CVE-2023-41106
    30İzleyin

    An issue was discovered in Zimbra Collaboration (ZCS) before 10.0.3.

    YüksekCVSS 7,5İstismar yokEPSS %1

    zimbra · collaboration7 Ara 2023

  • CVE-2023-38750
    30İzleyin

    In Zimbra Collaboration (ZCS) 8 before 8.8.15 Patch 41, 9 before 9.0.0 Patch 34, and 10 before 10.0.2, internal JSP and XML files can be exp

    YüksekCVSS 7,5İstismar yokEPSS %1

    zimbra · zimbra31 Tem 2023

  • CVE-2022-37041
    30İzleyin

    An issue was discovered in ProxyServlet.java in the /proxy servlet in Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0.

    YüksekCVSS 7,5İstismar yokEPSS %1

    zimbra · collaboration12 Ağu 2022

  • CVE-2024-33535
    30İzleyin

    An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0.

    YüksekCVSS 7,5İstismar yokEPSS %1

    zimbra · collaboration12 Ağu 2024

  • CVE-2022-45912
    28İzleyin

    An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15 and 9.0.

    YüksekCVSS 7,2İstismar yokEPSS %1

    zimbra · collaboration5 Ara 2022

  • CVE-2020-35123
    26İzleyin

    In Zimbra Collaboration Suite Network Edition versions < 9.0.0 P10 and 8.8.15 P17, there exists an XXE vulnerability in the saml consumer st

    OrtaCVSS 6,5İstismar yokEPSS %2

    zimbra · collaboration17 Ara 2020

  • CVE-2020-10194
    26İzleyin

    cs/service/account/AutoCompleteGal.java in Zimbra zm-mailbox before 8.8.15.p8 allows authenticated users to request any GAL account.

    OrtaCVSS 6,5İstismar yokEPSS %1

    zimbra · zm-mailbox20 Mar 2020

  • CVE-2023-26562
    26İzleyin

    In Zimbra Collaboration (ZCS) 8.8.15 and 9.0, a closed account (with 2FA and generated passwords) can send e-mail messages when configured f

    OrtaCVSS 6,5İstismar yokEPSS %1

    zimbra · collaboration13 Şub 2024

  • CVE-2024-9665
    26İzleyin

    Zimbra GraphQL Cross-Site Request Forgery Information Disclosure Vulnerability

    OrtaCVSS 6,5İstismar yokEPSS %0

    zimbra · zimbra22 Kas 2024

  • CVE-2021-35207
    25İzleyin

    An issue was discovered in Zimbra Collaboration Suite 8.8 before 8.8.15 Patch 23 and 9.0 before 9.0.0 Patch 16.

    OrtaCVSS 6,1İstismar yokEPSS %3

    zimbra · collaboration2 Tem 2021

  • CVE-2013-1938
    25İzleyin

    Zimbra 2013 has XSS in aspell.php

    OrtaCVSS 6,1Kavram kanıtıEPSS %3

    zimbra · zimbra12 Şub 2020