216.73.217.22

CVE-2022-41352

· Published 20/10/2022 02:00 · Modified 20/12/2025 23:05 · Author: Cybersecurity and Infrastructure Security Agency

Labels: CVE-2022-41352

Essential information

Published
20/10/2022 02:00
Modified
20/12/2025 23:05
Author
Cybersecurity and Infrastructure Security Agency
Creator
Cybersecurity and Infrastructure Security Agency
CVSS
9.8 CRITICAL (v3.1)
CISA KEV
Yes
CWE
CVSS vector
CVSS:3.1/AV:N/C:H/I:H/A:H

CVSS metrics

Description

Synacor Zimbra Collaboration Suite (ZCS) allows an attacker to upload arbitrary files using cpio package to gain incorrect access to any other user accounts.

NVD status

NVD
View on NVD