February 11, 2021

Cve20207796 Zimbra Collaboration Suite Full -

Cve20207796 Zimbra Collaboration Suite Full -

CVE ID: CVE-2020-7796 Severity: High (CVSS 7.5 – 8.2 depending on configuration) Affected Software: Zimbra Collaboration Suite (ZCS) versions prior to 8.8.15.patch7 and 8.8.12.patch11. Vulnerability Type: Unrestricted Upload of File with Dangerous Type (Remote Code Execution)

A successful exploitation of CVE-2020-7796 has severe consequences for the Zimbra instance: cve20207796 zimbra collaboration suite full

The attacker first checks if the target Zimbra server is vulnerable by sending a benign request to the proxy endpoint and examining the response headers or error messages. CVE ID: CVE-2020-7796 Severity: High (CVSS 7

TOP