Lucene search

K
cvelistMitreCVELIST:CVE-2021-35207
HistoryJul 02, 2021 - 6:55 p.m.

CVE-2021-35207

2021-07-0218:55:00
mitre
www.cve.org
10
zimbra collaboration suite
xss vulnerability
zimbra web client
javascript
login component

AI Score

7

Confidence

High

EPSS

0.001

Percentile

44.3%

An issue was discovered in Zimbra Collaboration Suite 8.8 before 8.8.15 Patch 23 and 9.0 before 9.0.0 Patch 16. An XSS vulnerability exists in the login component of Zimbra Web Client, in which an attacker can execute arbitrary JavaScript by adding executable JavaScript to the loginErrorCode parameter of the login url.

AI Score

7

Confidence

High

EPSS

0.001

Percentile

44.3%

Related for CVELIST:CVE-2021-35207