Логотип exploitDog
bind:CVE-2022-24682
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-24682

Количество 3

Количество 3

nvd логотип

CVE-2022-24682

около 4 лет назад

An issue was discovered in the Calendar feature in Zimbra Collaboration Suite 8.8.x before 8.8.15 patch 30 (update 1), as exploited in the wild starting in December 2021. An attacker could place HTML containing executable JavaScript inside element attributes. This markup becomes unescaped, causing arbitrary markup to be injected into the document.

CVSS3: 6.1
EPSS: Высокий
github логотип

GHSA-fh88-2p7h-7g9h

почти 4 года назад

An issue was discovered in the Calendar feature in Zimbra Collaboration Suite 8.8.x before 8.8.15 patch 30 (update 1), as exploited in the wild starting in December 2021. An attacker could place HTML containing executable JavaScript inside element attributes. This markup becomes unescaped, causing arbitrary markup to be injected into the document.

CVSS3: 6.1
EPSS: Высокий
fstec логотип

BDU:2022-05422

почти 4 года назад

Уязвимость компонента Calendar корпоративной системы управления электронной почтой Zimbra Collaboration Suite, позволяющая нарушителю внедрить произвольную разметку в документ

CVSS3: 6.1
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-24682

An issue was discovered in the Calendar feature in Zimbra Collaboration Suite 8.8.x before 8.8.15 patch 30 (update 1), as exploited in the wild starting in December 2021. An attacker could place HTML containing executable JavaScript inside element attributes. This markup becomes unescaped, causing arbitrary markup to be injected into the document.

CVSS3: 6.1
87%
Высокий
около 4 лет назад
github логотип
GHSA-fh88-2p7h-7g9h

An issue was discovered in the Calendar feature in Zimbra Collaboration Suite 8.8.x before 8.8.15 patch 30 (update 1), as exploited in the wild starting in December 2021. An attacker could place HTML containing executable JavaScript inside element attributes. This markup becomes unescaped, causing arbitrary markup to be injected into the document.

CVSS3: 6.1
87%
Высокий
почти 4 года назад
fstec логотип
BDU:2022-05422

Уязвимость компонента Calendar корпоративной системы управления электронной почтой Zimbra Collaboration Suite, позволяющая нарушителю внедрить произвольную разметку в документ

CVSS3: 6.1
87%
Высокий
почти 4 года назад

Уязвимостей на страницу