Beveiligingsadvies

CVE-2020-13653

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2020-07-02 15:15:44
Laatst bijgewerkt 2024-08-04 12:25:16
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

An XSS vulnerability exists in the Webmail component of Zimbra Collaboration Suite before 8.8.15 Patch 11. It allows an attacker to inject executable JavaScript into the account name of a user's profile. The injected code can be reflected and executed when changing an e-mail signature.