Vulnerability Details CVE-2024-45519
The postjournal service in Zimbra Collaboration (ZCS) before 8.8.15 Patch 46, 9 before 9.0.0 Patch 41, 10 before 10.0.9, and 10.1 before 10.1.1 sometimes allows unauthenticated users to execute commands.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.329
EPSS Ranking 97.1%
CVSS Severity
CVSS v3 Score 10.0
Proposed Action
Synacor Zimbra Collaboration contains an unspecified vulnerability in the postjournal service that may allow an unauthenticated user to execute commands.
Ransomware Campaign
Unknown
Products affected by CVE-2024-45519
-
cpe:2.3:a:zimbra:collaboration:-
-
cpe:2.3:a:zimbra:collaboration:10.0.0
-
cpe:2.3:a:zimbra:collaboration:10.0.1
-
cpe:2.3:a:zimbra:collaboration:10.0.2
-
cpe:2.3:a:zimbra:collaboration:10.0.3
-
cpe:2.3:a:zimbra:collaboration:10.0.4
-
cpe:2.3:a:zimbra:collaboration:10.0.5
-
cpe:2.3:a:zimbra:collaboration:10.0.6
-
cpe:2.3:a:zimbra:collaboration:10.0.7
-
cpe:2.3:a:zimbra:collaboration:10.0.8
-
cpe:2.3:a:zimbra:collaboration:10.1.0
-
cpe:2.3:a:zimbra:collaboration:8.7.10
-
cpe:2.3:a:zimbra:collaboration:8.7.11
-
cpe:2.3:a:zimbra:collaboration:8.7.6
-
cpe:2.3:a:zimbra:collaboration:8.7.7
-
cpe:2.3:a:zimbra:collaboration:8.7.9
-
cpe:2.3:a:zimbra:collaboration:8.8
-
cpe:2.3:a:zimbra:collaboration:8.8.0
-
cpe:2.3:a:zimbra:collaboration:8.8.10
-
cpe:2.3:a:zimbra:collaboration:8.8.11
-
cpe:2.3:a:zimbra:collaboration:8.8.12
-
cpe:2.3:a:zimbra:collaboration:8.8.15
-
cpe:2.3:a:zimbra:collaboration:8.8.2
-
cpe:2.3:a:zimbra:collaboration:8.8.3
-
cpe:2.3:a:zimbra:collaboration:8.8.4
-
cpe:2.3:a:zimbra:collaboration:8.8.6
-
cpe:2.3:a:zimbra:collaboration:8.8.7
-
cpe:2.3:a:zimbra:collaboration:8.8.8
-
cpe:2.3:a:zimbra:collaboration:8.8.9
-
cpe:2.3:a:zimbra:collaboration:9.0.0