Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
zimbra collaboration suite vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2016-3402
Unspecified vulnerability in Zimbra Collaboration prior to 8.7.0 allows remote malicious users to affect confidentiality via unknown vectors, aka bug 99167.
Synacor Zimbra Collaboration Suite
7.5
CVSSv3
CVE-2016-3404
Unspecified vulnerability in Zimbra Collaboration prior to 8.7.0 allows remote malicious users to affect integrity via unknown vectors, aka bug 103959.
Synacor Zimbra Collaboration Suite
7.5
CVSSv3
CVE-2016-3405
Multiple unspecified vulnerabilities in Zimbra Collaboration prior to 8.7.0 allow remote malicious users to affect integrity via unknown vectors, aka bugs 103961 and 104828.
Synacor Zimbra Collaboration Suite
7.5
CVSSv3
CVE-2016-3413
Unspecified vulnerability in Zimbra Collaboration prior to 8.7.0 allows remote malicious users to affect integrity via unknown vectors, aka bug 103996.
Synacor Zimbra Collaboration Suite
7.2
CVSSv3
CVE-2022-27925
Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it. An authenticated user with administrator rights has the ability to upload arbitrary files to the system, leading to directory traversal.
Zimbra Collaboration 9.0.0
Zimbra Collaboration 8.8.15
1 Metasploit module
13 Github repositories
1 Article
6.5
CVSSv3
CVE-2020-35123
In Zimbra Collaboration Suite Network Edition versions < 9.0.0 P10 and 8.8.15 P17, there exists an XXE vulnerability in the saml consumer store extension, which is vulnerable to XXE attacks. This has been fixed in Zimbra Collaboration Suite Network edition 9.0.0 Patch 10 and 8...
Zimbra Collaboration
Zimbra Collaboration 8.8.15
Zimbra Collaboration 9.0.0
6.5
CVSSv3
CVE-2019-6981
Zimbra Collaboration Suite 8.7.x up to and including 8.8.11 allows Blind SSRF in the Feed component.
Synacor Zimbra Collaboration Suite 8.8.11
Synacor Zimbra Collaboration Suite 8.8.10
Synacor Zimbra Collaboration Suite 8.8.9
Synacor Zimbra Collaboration Suite 8.7.11
Synacor Zimbra Collaboration Suite
6.5
CVSSv3
CVE-2018-10951
mailboxd in Zimbra Collaboration Suite 8.8 prior to 8.8.8; 8.7 prior to 8.7.11.Patch3; and 8.6 prior to 8.6.0.Patch10 allows zimbraSSLPrivateKey read access via a GetServer, GetAllServers, or GetAllActiveServers call in the Admin SOAP API.
Zimbra Zimbra Collaboration Suite 8.6
Zimbra Zimbra Collaboration Suite 8.7.11
Synacor Zimbra Collaboration Suite
6.5
CVSSv3
CVE-2016-3401
Unspecified vulnerability in Zimbra Collaboration prior to 8.7.0 allows remote authenticated users to affect integrity via unknown vectors, aka bug 99810.
Synacor Zimbra Collaboration Suite
6.5
CVSSv3
CVE-2016-3414
Unspecified vulnerability in Zimbra Collaboration prior to 8.6.0 Patch 7 allows remote authenticated users to affect availability via unknown vectors, aka bug 102029.
Synacor Zimbra Collaboration Suite
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
firmware
CVE-2023-52866
CVE-2024-4367
CVE-2024-1721
CVE-2023-34992
XML injection
CVE-2023-52817
SQL
CVE-2023-52855
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »