CVE-2019-9621
30.04.2019, 18:29
Zimbra Collaboration Suite before 8.6 patch 13, 8.7.x before 8.7.11 patch 10, and 8.8.x before 8.8.10 patch 7 or 8.8.x before 8.8.11 patch 3 allows SSRF via the ProxyServlet component.
Vendor | Product | Version |
---|---|---|
zimbra | collaboration_server | 𝑥 < 8.6.0 |
zimbra | collaboration_server | 8.7.0 ≤ 𝑥 < 8.7.11 |
zimbra | collaboration_server | 8.8.0 ≤ 𝑥 < 8.8.10 |
zimbra | collaboration_server | 8.6.0 |
zimbra | collaboration_server | 8.6.0:p1 |
zimbra | collaboration_server | 8.6.0:p10 |
zimbra | collaboration_server | 8.6.0:p11 |
zimbra | collaboration_server | 8.6.0:p12 |
zimbra | collaboration_server | 8.6.0:p2 |
zimbra | collaboration_server | 8.6.0:p3 |
zimbra | collaboration_server | 8.6.0:p4 |
zimbra | collaboration_server | 8.6.0:p5 |
zimbra | collaboration_server | 8.6.0:p6 |
zimbra | collaboration_server | 8.6.0:p7 |
zimbra | collaboration_server | 8.6.0:p8 |
zimbra | collaboration_server | 8.6.0:p9 |
zimbra | collaboration_server | 8.7.11 |
zimbra | collaboration_server | 8.7.11:p1 |
zimbra | collaboration_server | 8.7.11:p2 |
zimbra | collaboration_server | 8.7.11:p3 |
zimbra | collaboration_server | 8.7.11:p4 |
zimbra | collaboration_server | 8.7.11:p5 |
zimbra | collaboration_server | 8.7.11:p6 |
zimbra | collaboration_server | 8.7.11:p7 |
zimbra | collaboration_server | 8.7.11:p8 |
zimbra | collaboration_server | 8.7.11:p9 |
zimbra | collaboration_server | 8.8.10 |
zimbra | collaboration_server | 8.8.10:p1 |
zimbra | collaboration_server | 8.8.10:p2 |
zimbra | collaboration_server | 8.8.10:p3 |
zimbra | collaboration_server | 8.8.10:p4 |
zimbra | collaboration_server | 8.8.10:p5 |
zimbra | collaboration_server | 8.8.10:p6 |
zimbra | collaboration_server | 8.8.11 |
zimbra | collaboration_server | 8.8.11:p1 |
zimbra | collaboration_server | 8.8.11:p2 |
𝑥
= Vulnerable software versions
References