Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
synacor zimbra collaboration suite vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2016-3413
Unspecified vulnerability in Zimbra Collaboration prior to 8.7.0 allows remote malicious users to affect integrity via unknown vectors, aka bug 103996.
Synacor Zimbra Collaboration Suite
6.4
CVSSv2
CVE-2016-3415
Zimbra Collaboration prior to 8.7.0 allows remote malicious users to conduct deserialization attacks via unspecified vectors, aka bug 102276.
Synacor Zimbra Collaboration Suite
4.3
CVSSv2
CVE-2016-3999
Multiple cross-site scripting (XSS) vulnerabilities in Zimbra Collaboration prior to 8.7.0 allow remote malicious users to inject arbitrary web script or HTML via unspecified vectors, aka bugs 104552 and 104703.
Synacor Zimbra Collaboration Suite
3.5
CVSSv2
CVE-2017-8783
Synacor Zimbra Collaboration Suite (ZCS) prior to 8.7.10 has Persistent XSS.
Synacor Zimbra Collaboration Suite
4.3
CVSSv2
CVE-2016-4019
Unspecified vulnerability in Zimbra Collaboration prior to 8.7.0 allows remote malicious users to affect integrity via unknown vectors, aka bug 104477.
Synacor Zimbra Collaboration Suite
7.5
CVSSv2
CVE-2017-6813
A service provided by Zimbra Collaboration Suite (ZCS) prior to 8.7.6 fails to require needed privileges before performing a few requested operations.
Synacor Zimbra Collaboration Suite
4.3
CVSSv2
CVE-2020-18984
A reflected cross-site scripting (XSS) vulnerability in the zimbraAdmin/public/secureRequest.jsp component of Zimbra Collaboration 8.8.12 allows unauthenticated malicious users to execute arbitrary web scripts or HTML via a host header injection.
Synacor Zimbra Collaboration Suite 8.8.12
5.8
CVSSv2
CVE-2020-18985
An issue in /domain/service/.ewell-known/caldav of Zimbra Collaboration 8.8.12 allows malicious users to redirect users to any arbitrary website of their choosing.
Synacor Zimbra Collaboration Suite 8.8.12
4.3
CVSSv2
CVE-2015-7609
Synacor Zimbra Mail Client 8.6 prior to 8.6.0 Patch 5 has XSS via the error/warning dialog and email body content in Zimbra.
Synacor Zimbra Collaboration Suite 8.6.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
hard-coded
CVE-2024-27202
NULL pointer dereference
CVE-2024-28075
CVE-2024-33608
CVE-2024-28889
CVE-2024-34572
template injection
CVE-2024-34351
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5