Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q5qf-hx5c-q6fm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An XSS vulnerability exists in the Webmail component of Zimbra Collaboration Suite before 8.8.15 Patch 11. It allows an attacker to inject executable JavaScript into the account name of a user's profile. The injected code can be reflected and executed when changing an e-mail signature.

An XSS vulnerability exists in the Webmail component of Zimbra Collaboration Suite before 8.8.15 Patch 11. It allows an attacker to inject executable JavaScript into the account name of a user's profile. The injected code can be reflected and executed when changing an e-mail signature.

EPSS

Процентиль: 86%
0.02749
Низкий

Связанные уязвимости

CVSS3: 6.1
nvd
больше 5 лет назад

An XSS vulnerability exists in the Webmail component of Zimbra Collaboration Suite before 8.8.15 Patch 11. It allows an attacker to inject executable JavaScript into the account name of a user's profile. The injected code can be reflected and executed when changing an e-mail signature.

EPSS

Процентиль: 86%
0.02749
Низкий