CVE-2012-1213: XSS
Cross-site scripting (XSS) vulnerability in zimbra/h/calendar in Zimbra Web Client in Zimbra Collaboration Suite (ZCS) 6.x before 6.0.15 and 7.x before 7.1.3 allows remote attackers to inject arbitrary web script or HTML via the view parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1213?
CVE-2012-1213 is classified as a medium severity cross-site scripting vulnerability.
How do I fix CVE-2012-1213?
To fix CVE-2012-1213, upgrade to Zimbra Collaboration Suite version 6.0.15 or 7.1.3 or later.
What impact does CVE-2012-1213 have on users?
CVE-2012-1213 allows remote attackers to inject arbitrary web scripts or HTML, potentially compromising user data.
Which versions of Zimbra are affected by CVE-2012-1213?
CVE-2012-1213 affects Zimbra Collaboration Suite versions 6.x prior to 6.0.15 and 7.x prior to 7.1.3.
Is CVE-2012-1213 related to other vulnerabilities?
CVE-2012-1213 is specifically related to cross-site scripting and does not share a direct relationship with other vulnerabilities.