Zimbra Collaboration Suite(ZCS)是美国Zimbra的一款开源协同办公套件。该产品包括WebMail、日历、通信录等。 Zimbra Collaboration Suite 8.8.15 Patch 41之前版本存在安全漏洞,该漏洞源于在跨站脚本(XSS)漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Zimbra Collaboration (ZCS) 8 before 8.8.15 Patch 41 allows XSS in the Zimbra Classic Web Client. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-37580.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2023-35791 | 6.1 MEDIUM | Vound Intella Connect 输入验证错误漏洞 |
| CVE-2023-35792 | 5.4 MEDIUM | Vound Intella Connect 跨站脚本漏洞 |
| CVE-2023-38750 | Zimbra Collaboration Suite 安全漏洞 | |
| CVE-2023-34635 | Wifi Soft Unibox Administration SQL注入漏洞 | |
| CVE-2023-33534 | Guanzhou Tozed Kangwei Intelligent Technology ZLTS10G 跨站请求伪造漏洞 | |
| CVE-2021-31681 | yolov5-face 代码问题漏洞 | |
| CVE-2021-31680 | yolov5-face 代码问题漏洞 | |
| CVE-2021-31651 | NeoFrag 跨站脚本漏洞 | |
| CVE-2020-21881 | DuxCMS 跨站请求伪造漏洞 | |
| CVE-2020-21662 | Yunyecms SQL注入漏洞 | |
| CVE-2023-34842 | Desdev DedeCMS 代码注入漏洞 | |
| CVE-2023-37771 | Art Gallery Management System SQL注入漏洞 | |
| CVE-2023-34917 | Fuge CMS 输入验证错误漏洞 | |
| CVE-2023-34916 | Fuge CMS 输入验证错误漏洞 | |
| CVE-2020-36763 | DuxCMS 跨站脚本漏洞 | |
| CVE-2023-3983 | Advantech iView SQL注入漏洞 | |
| CVE-2023-38989 | jeesite 安全漏洞 | |
| CVE-2022-42183 | Precisely Spectrum Spatial Analyst 代码问题漏洞 | |
| CVE-2022-42182 | Precisely Spectrum Spatial Analyst 路径遍历漏洞 | |
| CVE-2023-39122 | BMC Control-M SQL注入漏洞 |
Showing top 20 of 38 CVEs. View all on vendor page → →
No comments yet