Zimbra Multiple Vulnerabilities
Release Date: 12 Aug 2025
RISK: Medium Risk
TYPE: Servers - Internet App Servers
Multiple vulnerabilities were identified in Zimbra. A remote attacker could exploit some of these vulnerabilities to trigger security restriction bypass, denial of service condition and sensitive information disclosure, on the targeted system.
Impact
- Security Restriction Bypass
- Denial of Service
- Information Disclosure
System / Technologies affected
- Zimbra Daffodil prior to 10.0.16
- Zimbra Daffodil prior to 10.1.10
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
- https://wiki.zimbra.com/wiki/Zimbra_Releases/10.0.16
- https://wiki.zimbra.com/wiki/Zimbra_Releases/10.1.10
沒有留言:
發佈留言