An issue was discovered in Zimbra... CVE-2021-35207

4.3 AV AC AU C I A
发布: 2021-07-02
修订: 2024-11-21

An issue was discovered in Zimbra Collaboration Suite 8.8 before 8.8.15 Patch 23 and 9.0 before 9.0.0 Patch 16. An XSS vulnerability exists in the login component of Zimbra Web Client, in which an attacker can execute arbitrary JavaScript by adding executable JavaScript to the loginErrorCode parameter of the login url.

0%
暂无可用Exp或PoC
当前有40条受影响产品信息