CVE-2018-10951
10.05.2018, 01:29
mailboxd in Zimbra Collaboration Suite 8.8 before 8.8.8; 8.7 before 8.7.11.Patch3; and 8.6 before 8.6.0.Patch10 allows zimbraSSLPrivateKey read access via a GetServer, GetAllServers, or GetAllActiveServers call in the Admin SOAP API.Enginsight
Vendor | Product | Version |
---|---|---|
synacor | zimbra_collaboration_suite | 8.7 ≤ 𝑥 ≤ 8.7.11 |
synacor | zimbra_collaboration_suite | 8.8 ≤ 𝑥 < 8.8.8 |
zimbra | zimbra_collaboration_suite | 8.6 |
zimbra | zimbra_collaboration_suite | 8.6:patch1 |
zimbra | zimbra_collaboration_suite | 8.6:patch2 |
zimbra | zimbra_collaboration_suite | 8.6:patch3 |
zimbra | zimbra_collaboration_suite | 8.6:patch4 |
zimbra | zimbra_collaboration_suite | 8.6:patch5 |
zimbra | zimbra_collaboration_suite | 8.6:patch6 |
zimbra | zimbra_collaboration_suite | 8.6:patch7 |
zimbra | zimbra_collaboration_suite | 8.6:patch8 |
zimbra | zimbra_collaboration_suite | 8.6:patch9 |
zimbra | zimbra_collaboration_suite | 8.7.11:patch1 |
zimbra | zimbra_collaboration_suite | 8.7.11:patch2 |
𝑥
= Vulnerable software versions