VendorsSynacorzimbra_collaboration_serverany version
Vulnerabilities

Synacor Zimbra Collaboration Server any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2014-8563
Synacor Zimbra Collaboration before 8.0.9 allows plaintext command injection during STARTTLS.
Published 2020-01-27 · Modified
9.8EPSS 0.025
CVE-2014-5500
Synacor Zimbra Collaboration before 8.0.8 has XSS.
Published 2020-01-27 · Modified
6.1EPSS 0.008
CVE-2015-2230
Synacor Zimbra Collaboration Server 8.x before 8.7.0 has Reflected XSS in admin console.
Published 2019-05-30 · Modified
6.1EPSS 0.008
CVE-2019-11318
Zimbra Collaboration before 8.8.12 Patch 1 has persistent XSS.
Published 2020-01-27 · Modified
5.4EPSS 0.011
CVE-2015-2249
Zimbra Collaboration before 8.6.0 patch5 has XSS.
Published 2020-01-27 · Modified
5.4EPSS 0.007