Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Zimbra_collaboration_suite
(Synacor)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 49 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2017-05-23 | CVE-2017-6821 | Directory traversal vulnerability in Zimbra Collaboration Suite (aka ZCS) before 8.7.6 allows attackers to have unspecified impact via unknown vectors. | Zimbra_collaboration_suite | 9.8 | ||
2017-05-23 | CVE-2017-6813 | A service provided by Zimbra Collaboration Suite (ZCS) before 8.7.6 fails to require needed privileges before performing a few requested operations. | Zimbra_collaboration_suite | 9.8 | ||
2017-03-29 | CVE-2016-9924 | Zimbra Collaboration Suite (ZCS) before 8.7.4 allows remote attackers to conduct XML External Entity (XXE) attacks. | Zimbra_collaboration_suite | 9.8 | ||
2017-01-18 | CVE-2016-4019 | Unspecified vulnerability in Zimbra Collaboration before 8.7.0 allows remote attackers to affect integrity via unknown vectors, aka bug 104477. | Zimbra_collaboration_suite | 7.5 | ||
2017-01-18 | CVE-2016-3999 | Multiple cross-site scripting (XSS) vulnerabilities in Zimbra Collaboration before 8.7.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka bugs 104552 and 104703. | Zimbra_collaboration_suite | 6.1 | ||
2017-01-18 | CVE-2016-3415 | Zimbra Collaboration before 8.7.0 allows remote attackers to conduct deserialization attacks via unspecified vectors, aka bug 102276. | Zimbra_collaboration_suite | 9.1 | ||
2017-01-18 | CVE-2016-3414 | Unspecified vulnerability in Zimbra Collaboration before 8.6.0 Patch 7 allows remote authenticated users to affect availability via unknown vectors, aka bug 102029. | Zimbra_collaboration_suite | 6.5 | ||
2017-01-18 | CVE-2016-3413 | Unspecified vulnerability in Zimbra Collaboration before 8.7.0 allows remote attackers to affect integrity via unknown vectors, aka bug 103996. | Zimbra_collaboration_suite | 7.5 | ||
2017-01-18 | CVE-2016-3412 | Multiple cross-site scripting (XSS) vulnerabilities in Zimbra Collaboration before 8.7.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka bugs 103997, 104413, 104414, 104777, and 104791. | Zimbra_collaboration_suite | 6.1 | ||
2017-01-18 | CVE-2016-3411 | Cross-site scripting (XSS) vulnerability in Zimbra Collaboration before 8.7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka bug 103609. | Zimbra_collaboration_suite | 6.1 |