VDB

CVE-2024-45519

CVE-2024-45519 PUBLISHED KEV CVSS 10 CRITICAL

The postjournal service in Zimbra Collaboration (ZCS) before 8.8.15 Patch 46, 9 before 9.0.0 Patch 41, 10 before 10.0.9, and 10.1 before 10.1.1 sometimes allows unauthenticated users to execute commands.

EPSS 99.91% · 100.0th percentile

Risk Scores

CVSS 3.1
10
CVSS:3.1/AC:L/AV:N/A:H/C:H/I:H/PR:N/S:C/UI:N
EPSS Score
99.91%
100.0th percentile

Affected Products

VendorProductVersions
n/an/an/a
synacorzimbra_collaboration_suite0, 10.0.0, 8.8.15

Timeline

  • Sep 5, 2024 CVE Published
  • Sep 24, 2024 PoC Published
  • Sep 25, 2024 PoC Published
  • Sep 26, 2024 PoC Published
  • Sep 26, 2024 PoC Published
  • Sep 28, 2024 PoC Published
  • Sep 29, 2024 PoC Published
  • Sep 29, 2024 PoC Published
  • Sep 29, 2024 PoC Published
  • Sep 29, 2024 PoC Published
  • Sep 29, 2024 PoC Published
  • Sep 29, 2024 PoC Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›