First published: Tue May 23 2017(Updated: )
A service provided by Zimbra Collaboration Suite (ZCS) before 8.7.6 fails to require needed privileges before performing a few requested operations.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zimbra Collaboration Suite | <=8.7.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2017-6813 is classified as medium due to improper privilege management in Zimbra Collaboration Suite.
To fix CVE-2017-6813, you should upgrade Zimbra Collaboration Suite to version 8.7.6 or later.
CVE-2017-6813 affects operations that require certain privileges which were not enforced in earlier versions of Zimbra Collaboration Suite.
Zimbra Collaboration Suite versions before 8.7.6, including 8.7.5 or earlier, are vulnerable to CVE-2017-6813.
Exploiting CVE-2017-6813 can allow unauthorized users to perform actions that require higher privileges on the Zimbra system.