CVE-2015-2230

Synacor Zimbra Collaboration Server 8.x before 8.7.0 has Reflected XSS in admin console.
References
Link Resource
https://bugzilla.zimbra.com/show_bug.cgi?id=97625 Issue Tracking Vendor Advisory
https://wiki.zimbra.com/wiki/Security_Center Patch Vendor Advisory
https://bugzilla.zimbra.com/show_bug.cgi?id=97625 Issue Tracking Vendor Advisory
https://wiki.zimbra.com/wiki/Security_Center Patch Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:synacor:zimbra_collaboration_server:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:27

Type Values Removed Values Added
References () https://bugzilla.zimbra.com/show_bug.cgi?id=97625 - Issue Tracking, Vendor Advisory () https://bugzilla.zimbra.com/show_bug.cgi?id=97625 - Issue Tracking, Vendor Advisory
References () https://wiki.zimbra.com/wiki/Security_Center - Patch, Vendor Advisory () https://wiki.zimbra.com/wiki/Security_Center - Patch, Vendor Advisory

Information

Published : 2019-05-30 20:29

Updated : 2024-11-21 02:27


NVD link : CVE-2015-2230

Mitre link : CVE-2015-2230

CVE.ORG link : CVE-2015-2230


JSON object : View

Products Affected

synacor

  • zimbra_collaboration_server
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')