VYPR
Medium severity6.1OSV Advisory· Published May 30, 2018· Updated Jun 17, 2026

CVE-2018-10939

CVE-2018-10939

Description

Zimbra Web Client (ZWC) in Zimbra Collaboration Suite 8.8 before 8.8.8.Patch4 and 8.7 before 8.7.11.Patch4 has Persistent XSS via a contact group.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

9
  • Range: 8.7.10, 8.7.11, 8.7.11.p1, …
  • cpe:2.3:a:synacor:zimbra_collaboration_suite:*:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:synacor:zimbra_collaboration_suite:*:*:*:*:*:*:*:*range: >=8.7.0,<=8.7.11
    • cpe:2.3:a:synacor:zimbra_collaboration_suite:8.7.11:p1:*:*:*:*:*:*
    • cpe:2.3:a:synacor:zimbra_collaboration_suite:8.7.11:p2:*:*:*:*:*:*
    • cpe:2.3:a:synacor:zimbra_collaboration_suite:8.7.11:p3:*:*:*:*:*:*
    • cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.8:p1:*:*:*:*:*:*
    • cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.8:p3:*:*:*:*:*:*
  • cpe:2.3:a:zimbra:zimbra_collaboration_suite:8.8.8:p2:*:*:*:*:*:*
  • Range: 8.7 < 8.7.11.Patch4, 8.8 < 8.8.8.Patch4

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.