Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-27925
HistoryApr 21, 2022 - 12:15 a.m.

Directory traversal

2022-04-2100:15:00
PRIOn knowledge base
www.prio-n.com
24

7.6 High

AI Score

Confidence

High

0.948 High

EPSS

Percentile

99.3%

Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it. An authenticated user with administrator rights has the ability to upload arbitrary files to the system, leading to directory traversal.

CPENameOperatorVersion
collaborationeq9.0.0
collaborationeq8.8.15