Логотип exploitDog
bind:CVE-2022-41347
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-41347

Количество 3

Количество 3

nvd логотип

CVE-2022-41347

больше 3 лет назад

An issue was discovered in Zimbra Collaboration (ZCS) 8.8.x and 9.x (e.g., 8.8.15). The Sudo configuration permits the zimbra user to execute the NGINX binary as root with arbitrary parameters. As part of its intended functionality, NGINX can load a user-defined configuration file, which includes plugins in the form of .so files, which also execute as root.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-w7p3-hmmp-qmx6

больше 3 лет назад

An issue was discovered in Zimbra Collaboration (ZCS) 8.8.x and 9.x (e.g., 8.8.15). The Sudo configuration permits the zimbra user to execute the NGINX binary as root with arbitrary parameters. As part of its intended functionality, NGINX can load a user-defined configuration file, which includes plugins in the form of .so files, which also execute as root.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2022-06080

больше 4 лет назад

Уязвимость программы системного администрирования Sudo корпоративной системы управления электронной почтой Zimbra Collaboration Suite, позволяющая нарушителю повысить свои привилегии

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-41347

An issue was discovered in Zimbra Collaboration (ZCS) 8.8.x and 9.x (e.g., 8.8.15). The Sudo configuration permits the zimbra user to execute the NGINX binary as root with arbitrary parameters. As part of its intended functionality, NGINX can load a user-defined configuration file, which includes plugins in the form of .so files, which also execute as root.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-w7p3-hmmp-qmx6

An issue was discovered in Zimbra Collaboration (ZCS) 8.8.x and 9.x (e.g., 8.8.15). The Sudo configuration permits the zimbra user to execute the NGINX binary as root with arbitrary parameters. As part of its intended functionality, NGINX can load a user-defined configuration file, which includes plugins in the form of .so files, which also execute as root.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2022-06080

Уязвимость программы системного администрирования Sudo корпоративной системы управления электронной почтой Zimbra Collaboration Suite, позволяющая нарушителю повысить свои привилегии

CVSS3: 7.8
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу