mirror of
https://github.com/gobysec/GobyVuls.git
synced 2025-05-30 18:20:26 +00:00
11 lines
381 B
Markdown
11 lines
381 B
Markdown
![]() |
# CVE-2019-9670 Zimbra XXE
|
||
|
|
||
|
mailboxd component in Synacor Zimbra Collaboration Suite 8.7.x before 8.7.11p10 has an XML External Entity injection (XXE) vulnerability.
|
||
|
|
||
|
**Affected version**: Zimbra Collaboration Suite 8.7.0 - 8.7.11
|
||
|
|
||
|
**[FOFA](https://fofa.so/result?q=app%3D%22Zimbra%22&qbase64=YXBwPSJaaW1icmEi&file=&file=) query rule**: app="Zimbra"
|
||
|
|
||
|
# Demo
|
||
|
|
||
|

|