CVE-2019-8947: XSS
Published Jan 27, 2020
·Updated
Zimbra Collaboration 8.7.x - 8.8.11P2 contains non-persistent XSS.
Affected Software
3 affected components
Zimbra Collaboration Server>=8.7.0<=8.8.11
Zimbra Collaboration Server=8.8.11-p1
Zimbra Collaboration Server=8.8.11-p2
Event History
Jan 27, 2020
CVE Published
via MITRE·06:35 PM
Data Sourced
via MITRE·06:35 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-8947?
The severity of CVE-2019-8947 is medium.
2
What is the affected software for CVE-2019-8947?
The affected software for CVE-2019-8947 is Zimbra Collaboration Server 8.7.x - 8.8.11P2.
3
How does CVE-2019-8947 affect Zimbra Collaboration Server?
CVE-2019-8947 allows for non-persistent XSS attacks on Zimbra Collaboration Server 8.7.x - 8.8.11P2.
4
How can the XSS vulnerability in Zimbra Collaboration Server be fixed?
To fix the XSS vulnerability in Zimbra Collaboration Server, it is recommended to update to a version that is not affected, such as 8.8.11-p3 or later.
5
Where can I find more information about CVE-2019-8947?
You can find more information about CVE-2019-8947 on the Zimbra Bugzilla website using the following links: [link1], [link2], [link3].