High severity7.2NVD Advisory· Published Dec 5, 2022· Updated Jun 17, 2026
CVE-2022-45912
CVE-2022-45912
Description
An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15 and 9.0. Remote code execution can occur through ClientUploader by an authenticated admin user. An authenticated admin user can upload files through the ClientUploader utility, and traverse to any other directory for remote code execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:zimbra:collaboration:8.8.15:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:zimbra:collaboration:8.8.15:*:*:*:*:*:*:*
- cpe:2.3:a:zimbra:collaboration:9.0.0:*:*:*:*:*:*:*
- Range: 8.8.15, 9.0
Patches
Vulnerability mechanics
References
1- gist.github.com/Threonic/e90c85e11e1ac925ff57783988779e76nvdThird Party Advisory
News mentions
0No linked articles in our index yet.