Zimbra Collaboration (ZCS) 8 before 8.8.15 Patch 41 allows XSS in the Zimbra Classic Web Client.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Weakness Type (CWE)
Vulnerable Products 14
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:*:*:*:*:*:*:*:*
|
8.8.0
|
8.8.15
|
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.15:p11:*:*:*:*:*:*
|
— | — |
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.15:p26:*:*:*:*:*:*
|
— | — |
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.15:p3:*:*:*:*:*:*
|
— | — |
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.15:p30:*:*:*:*:*:*
|
— | — |
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.15:p31:*:*:*:*:*:*
|
— | — |
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.15:p32:*:*:*:*:*:*
|
— | — |
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.15:p33:*:*:*:*:*:*
|
— | — |
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.15:p34:*:*:*:*:*:*
|
— | — |
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.15:p35:*:*:*:*:*:*
|
— | — |
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.15:p37:*:*:*:*:*:*
|
— | — |
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.15:p38:*:*:*:*:*:*
|
— | — |
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.15:p40:*:*:*:*:*:*
|
— | — |
|
Synacor Zimbra_Collaboration_Suite
cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.15:p5:*:*:*:*:*:*
|
— | — |