Zimbra Collaboration Server
by VMware
CVEs (5)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2014-8563 | Cri | 0.64 | 9.8 | 0.03 | Jan 27, 2020 | Synacor Zimbra Collaboration before 8.0.9 allows plaintext command injection during STARTTLS. | ||
| CVE-2014-5500 | Med | 0.40 | 6.1 | 0.01 | Jan 27, 2020 | Synacor Zimbra Collaboration before 8.0.8 has XSS. | ||
| CVE-2015-2230 | Med | 0.40 | 6.1 | 0.01 | May 30, 2019 | Synacor Zimbra Collaboration Server 8.x before 8.7.0 has Reflected XSS in admin console. | ||
| CVE-2019-11318 | Med | 0.35 | 5.4 | 0.01 | Jan 27, 2020 | Zimbra Collaboration before 8.8.12 Patch 1 has persistent XSS. | ||
| CVE-2015-2249 | Med | 0.35 | 5.4 | 0.01 | Jan 27, 2020 | Zimbra Collaboration before 8.6.0 patch5 has XSS. |
- risk 0.64cvss 9.8epss 0.03
Synacor Zimbra Collaboration before 8.0.9 allows plaintext command injection during STARTTLS.
- risk 0.40cvss 6.1epss 0.01
Synacor Zimbra Collaboration before 8.0.8 has XSS.
- risk 0.40cvss 6.1epss 0.01
Synacor Zimbra Collaboration Server 8.x before 8.7.0 has Reflected XSS in admin console.
- risk 0.35cvss 5.4epss 0.01
Zimbra Collaboration before 8.8.12 Patch 1 has persistent XSS.
- risk 0.35cvss 5.4epss 0.01
Zimbra Collaboration before 8.6.0 patch5 has XSS.