CVE-2022-27925

CVE-2022-27925

Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it. An authenticated user with administrator rights has the ability to upload arbitrary files to the system, leading to directory traversal.

Source: CVE-2022-27925

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다