Количество 2
Количество 2
CVE-2025-71275
Rejected reason: This CVE was rejected due to being a duplicate of CVE-2024-45519.
GHSA-4cgv-84wm-gp2c
Zimbra Collaboration Suite (ZCS) PostJournal service version 8.8.15 contains a command injection vulnerability that allows unauthenticated attackers to execute arbitrary system commands by exploiting improper sanitization of the RCPT TO parameter via SMTP injection. Attackers can inject shell expansion syntax through the RCPT TO parameter to achieve remote code execution under the Zimbra service context.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-71275 Rejected reason: This CVE was rejected due to being a duplicate of CVE-2024-45519. | около 1 месяца назад | |||
GHSA-4cgv-84wm-gp2c Zimbra Collaboration Suite (ZCS) PostJournal service version 8.8.15 contains a command injection vulnerability that allows unauthenticated attackers to execute arbitrary system commands by exploiting improper sanitization of the RCPT TO parameter via SMTP injection. Attackers can inject shell expansion syntax through the RCPT TO parameter to achieve remote code execution under the Zimbra service context. | CVSS3: 9.8 | около 1 месяца назад |
Уязвимостей на страницу