CVE-2022-41352

An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15 and 9.0. An attacker can upload arbitrary files through amavis via a cpio loophole (extraction to /opt/zimbra/jetty/webapps/zimbra/public) that can lead to incorrect access to any other user accounts. Zimbra recommends pax over cpio. Also, pax is in the prerequisites of Zimbra on Ubuntu; however, pax is no longer part of a default Red Hat installation after RHEL 6 (or CentOS 6). Once pax is installed, amavis automatically prefers it over cpio.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
CISA-ADPADP
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 99%
VendorProductVersion
synacorzimbra_collaboration_suite
9.0.0
synacorzimbra_collaboration_suite
9.0.0:p1
synacorzimbra_collaboration_suite
9.0.0:p10
synacorzimbra_collaboration_suite
9.0.0:p11
synacorzimbra_collaboration_suite
9.0.0:p12
synacorzimbra_collaboration_suite
9.0.0:p13
synacorzimbra_collaboration_suite
9.0.0:p14
synacorzimbra_collaboration_suite
9.0.0:p15
synacorzimbra_collaboration_suite
9.0.0:p16
synacorzimbra_collaboration_suite
9.0.0:p17
synacorzimbra_collaboration_suite
9.0.0:p18
synacorzimbra_collaboration_suite
9.0.0:p19
synacorzimbra_collaboration_suite
9.0.0:p2
synacorzimbra_collaboration_suite
9.0.0:p20
synacorzimbra_collaboration_suite
9.0.0:p21
synacorzimbra_collaboration_suite
9.0.0:p22
synacorzimbra_collaboration_suite
9.0.0:p23
synacorzimbra_collaboration_suite
9.0.0:p24
synacorzimbra_collaboration_suite
9.0.0:p24.1
synacorzimbra_collaboration_suite
9.0.0:p25
synacorzimbra_collaboration_suite
9.0.0:p26
synacorzimbra_collaboration_suite
9.0.0:p3
synacorzimbra_collaboration_suite
9.0.0:p4
synacorzimbra_collaboration_suite
9.0.0:p5
synacorzimbra_collaboration_suite
9.0.0:p6
synacorzimbra_collaboration_suite
9.0.0:p7
synacorzimbra_collaboration_suite
9.0.0:p8
synacorzimbra_collaboration_suite
9.0.0:p9
synacorzimbra_collaboration_suite
8.8.15
synacorzimbra_collaboration_suite
8.8.15:p1
synacorzimbra_collaboration_suite
8.8.15:p10
synacorzimbra_collaboration_suite
8.8.15:p11
synacorzimbra_collaboration_suite
8.8.15:p12
synacorzimbra_collaboration_suite
8.8.15:p13
synacorzimbra_collaboration_suite
8.8.15:p14
synacorzimbra_collaboration_suite
8.8.15:p15
synacorzimbra_collaboration_suite
8.8.15:p16
synacorzimbra_collaboration_suite
8.8.15:p17
synacorzimbra_collaboration_suite
8.8.15:p18
synacorzimbra_collaboration_suite
8.8.15:p19
synacorzimbra_collaboration_suite
8.8.15:p2
synacorzimbra_collaboration_suite
8.8.15:p20
synacorzimbra_collaboration_suite
8.8.15:p21
synacorzimbra_collaboration_suite
8.8.15:p22
synacorzimbra_collaboration_suite
8.8.15:p23
synacorzimbra_collaboration_suite
8.8.15:p24
synacorzimbra_collaboration_suite
8.8.15:p25
synacorzimbra_collaboration_suite
8.8.15:p26
synacorzimbra_collaboration_suite
8.8.15:p27
synacorzimbra_collaboration_suite
8.8.15:p28
synacorzimbra_collaboration_suite
8.8.15:p29
synacorzimbra_collaboration_suite
8.8.15:p3
synacorzimbra_collaboration_suite
8.8.15:p30
synacorzimbra_collaboration_suite
8.8.15:p31
synacorzimbra_collaboration_suite
8.8.15:p31.1
synacorzimbra_collaboration_suite
8.8.15:p32
synacorzimbra_collaboration_suite
8.8.15:p33
synacorzimbra_collaboration_suite
8.8.15:p4
synacorzimbra_collaboration_suite
8.8.15:p5
synacorzimbra_collaboration_suite
8.8.15:p6
synacorzimbra_collaboration_suite
8.8.15:p7
synacorzimbra_collaboration_suite
8.8.15:p8
synacorzimbra_collaboration_suite
8.8.15:p9
𝑥
= Vulnerable software versions