Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-3569

Опубликовано: 17 окт. 2022
Источник: nvd
CVSS3: 7.8
EPSS Низкий

Описание

Due to an issue with incorrect sudo permissions, Zimbra Collaboration Suite (ZCS) suffers from a local privilege escalation issue in versions 9.0.0 and prior, where the 'zimbra' user can effectively coerce postfix into running arbitrary commands as 'root'.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:synacor:zimbra_collaboration_suite:*:*:*:*:*:*:*:*
Версия до 9.0.0 (включая)

EPSS

Процентиль: 86%
0.02836
Низкий

7.8 High

CVSS3

Дефекты

CWE-271
NVD-CWE-Other

Связанные уязвимости

CVSS3: 7.8
github
больше 3 лет назад

Due to an issue with incorrect sudo permissions, Zimbra Collaboration Suite (ZCS) suffers from a local privilege escalation issue in versions 9.0.0 and prior, where the 'zimbra' user can effectively coerce postfix into running arbitrary commands as 'root'.

EPSS

Процентиль: 86%
0.02836
Низкий

7.8 High

CVSS3

Дефекты

CWE-271
NVD-CWE-Other