CVE-2019-8945: XSS
Published Jan 27, 2020
·Updated
Zimbra Collaboration 8.7.x - 8.8.11P2 contains persistent XSS.
Affected Software
3 affected components
Zimbra Collaboration Server>=8.7.0<=8.8.11
Zimbra Collaboration Server=8.8.11-p1
Zimbra Collaboration Server=8.8.11-p2
Event History
Jan 27, 2020
CVE Published
via MITRE·06:37 PM
Data Sourced
via MITRE·06:37 PM
Description
Frequently Asked Questions
1
What is CVE-2019-8945?
CVE-2019-8945 is a vulnerability found in the Zimbra Collaboration Server versions 8.7.x to 8.8.11P2 that allows for persistent XSS attacks.
2
What is the severity of CVE-2019-8945?
CVE-2019-8945 has a severity level of medium, with a severity value of 6.1.
3
How does CVE-2019-8945 affect Zimbra Collaboration Server?
CVE-2019-8945 affects Zimbra Collaboration Server versions 8.7.x to 8.8.11P2, enabling persistent XSS attacks.
4
How can I fix CVE-2019-8945 in Zimbra Collaboration Server?
To fix CVE-2019-8945, it is recommended to update Zimbra Collaboration Server to a version beyond 8.8.11P2.
5
Where can I find more information about CVE-2019-8945?
More information about CVE-2019-8945 can be found on the Zimbra Bugzilla website: [https://bugzilla.zimbra.com/show_bug.cgi?id=109122](https://bugzilla.zimbra.com/show_bug.cgi?id=109122)