Medium severity6.1NVD Advisory· Published May 23, 2017· Updated May 13, 2026
CVE-2017-7288
CVE-2017-7288
Description
Cross-site scripting (XSS) vulnerability in Zimbra Collaboration Suite (ZCS) before 8.7.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected products
1- cpe:2.3:a:synacor:zimbra_collaboration_suite:*:*:*:*:*:*:*:*Range: <=8.7.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.securityfocus.com/bid/98081nvdThird Party AdvisoryVDB Entry
- wiki.zimbra.com/wiki/Zimbra_Releases/8.7.1nvdRelease NotesVendor Advisory
- wiki.zimbra.com/wiki/Zimbra_Security_AdvisoriesnvdVendor Advisory
News mentions
0No linked articles in our index yet.