Zimbra Multiple Vulnerabilities
Release Date: 29 May 2026
RISK: Medium Risk
TYPE: Servers - Internet App Servers
Multiple vulnerabilities were identified in Zimbra. A remote attacker could exploit some of these vulnerabilities to trigger spoofing, cross-site scripting, denial of service condition, sensitive information disclosure, security restriction bypass and data manipulation on the targeted system.
Impact
- Security Restriction Bypass
- Spoofing
- Denial of Service
- Data Manipulation
- Information Disclosure
- Cross-Site Scripting
System / Technologies affected
- Zimbra Daffodil prior to 10.1.16
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
沒有留言:
發佈留言