logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2019-9670

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2019-9670

Description:
mailboxd component in Synacor Zimbra Collaboration Suite 8.7.x before 8.7.11p10 has an XML External Entity injection (XXE) vulnerability, as demonstrated by Autodiscover/Autodiscover.xml.
Last updated date:
02/25/2025

Reports

alt

ACTIVELY EXPLOITED

Type:
exploitation
Confidence:
HIGH
Date of publishing:
04/03/2019
Reference url to background

https://forums.zimbra.org/viewtopic.php?t=65932

Type:
exploitation
Confidence:
HIGH
Date of publishing:
01/10/2022
Type:
exploit
Confidence:
HIGH
Date of publishing:
04/01/2019
Type:
exploit
Confidence:
HIGH
Date of publishing:
04/02/2019
Type:
exploit
Confidence:
HIGH
Date of publishing:
08/16/2019
Reference url to background

https://github.com/rek7/Zimbra-RCE

Type:
exploit
Confidence:
HIGH
Date of publishing:
06/26/2021
Type:
exploit
Confidence:
HIGH
Date of publishing:
06/26/2021
Type:
exploit
Confidence:
HIGH
Date of publishing:
06/28/2022
Reference url to background

https://github.com/oppsec/arbimz

Type:
exploit
Confidence:
HIGH
Date of publishing:
08/15/2022
Reference url to background

https://github.com/oppsec/zaber

Type:
exploit
Confidence:
HIGH
Date of publishing:
07/24/2024
Vulnerability FeedContributorsAboutBlog

@inTheWild

©2025

Privacy Policy