Medium severity6.1NVD Advisory· Published May 30, 2019· Updated Jun 17, 2026
CVE-2018-14425
CVE-2018-14425
Description
There is a Persistent XSS vulnerability in the briefcase component of Synacor Zimbra Collaboration Suite (ZCS) Zimbra Web Client (ZWC) 8.8.8 before 8.8.8 Patch 7 and 8.8.9 before 8.8.9 Patch 1.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9- Synacor/Zimbra Web Clientdescription
<8.8.8 Patch 7, <8.8.9 Patch 1+ 6 more
- (no CPE)range: <8.8.8 Patch 7, <8.8.9 Patch 1
- cpe:2.3:a:synacor:zimbra_collaboration_suite:*:*:*:*:*:*:*:*range: <8.8.8
- cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.8:-:*:*:*:*:*:*
- cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.8:patch1:*:*:*:*:*:*
- cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.8:patch3:*:*:*:*:*:*
- cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.8:patch4:*:*:*:*:*:*
- cpe:2.3:a:synacor:zimbra_collaboration_suite:8.8.9:-:*:*:*:*:*:*
- Range: <8.8.8 Patch 7, <8.8.9 Patch 1
Patches
Vulnerability mechanics
References
2- bugzilla.zimbra.com/show_bug.cginvdIssue TrackingVendor Advisory
- wiki.zimbra.com/wiki/Zimbra_Security_AdvisoriesnvdVendor Advisory
News mentions
0No linked articles in our index yet.