Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-70601
HistoryApr 22, 2022 - 12:00 a.m.

Zimbra Cross-Site Scripting Vulnerability

2022-04-2200:00:00
China National Vulnerability Database
www.cnvd.org.cn
10

0.962 High

EPSS

Percentile

99.5%

Zimbra Collaboration (aka ZCS) version 9.0 is vulnerable to a cross-site scripting vulnerability that stems from a lack of data validation filtering of user-supplied data and output. An attacker could exploit the vulnerability to execute JavaScript code on the client side.

CPENameOperatorVersion
zimbra zimbra collaborationeq9.0

0.962 High

EPSS

Percentile

99.5%