当 OnlyOffice/文档编辑功能可用时,未经身份验证的远程攻击者若能访问一个现有的受支持的公共 Briefcase 文档,便可滥用未签名的保存字段实现路径遍历写入,并以 zimbra 用户身份执行命令。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Zimbra | Zimbra Collaboration Suite (ZCS) | < 10.1.21 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Zimbra | Zimbra Collaboration Suite (ZCS) | 0 ~ 10.1.21 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-93642 | 9.3 CRITICAL | Zimbra Collaboration Suite Modern Web Client Stored Cross-Site Scripting via Forged Share |
| CVE-2026-93647 | 9.3 CRITICAL | Zimbra Collaboration Suite Classic Web Client Stored Cross-Site Scripting via Crafted Cale |
| CVE-2026-93641 | 9.3 CRITICAL | Zimbra Collaboration Suite Classic Web Client Stored Cross-Site Scripting via Forged Share |
No comments yet