VDB
CVE-2022-27924
CVE-2022-27924
PUBLISHED
KEV
Une vulnérabilité a été découverte dans Zimbra. Elle permet à un attaquant de provoquer une exécution de code arbitraire à distance et une atteinte à l'intégrité des données.
EPSS 85.40% · 99.7th percentile
Risk Scores
EPSS Score
85.40%
99.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| N/A | N/A |
Timeline
- Nov 23, 2017 PoC Published
- Mar 12, 2018 PoC Published
- Feb 5, 2019 PoC Published
- May 17, 2020 PoC Published
- Sep 17, 2020 PoC Published
- Oct 3, 2020 PoC Published
- Mar 4, 2021 PoC Published
- Apr 26, 2021 PoC Published
- Jun 28, 2021 PoC Published
- Jul 2, 2021 PoC Published
- Sep 23, 2021 PoC Published
- Oct 6, 2021 PoC Published
References
- https://cert.ssi.gouv.fr/avis/CERTFR-2022-AVI-291/ advisory
- https://wiki.zimbra.com/wiki/Zimbra_Releases/8.8.15/P31 advisory
- https://wiki.zimbra.com/wiki/Zimbra_Releases/9.0.0/P24 advisory
- https://cert.ssi.gouv.fr/avis/CERTFR-2022-AVI-442/ advisory
- https://blog.zimbra.com/2022/05/new-zimbra-security-patches-9-0-0-patch-24-1-and-8-8-15-patch-31-1/ advisory