CVE-2020-8633: Medium severity Synacor Zimbra Collaboration Suite vulnerability
An issue was discovered in Zimbra Collaboration Suite (ZCS) before 8.8.15 Patch 7. When grantors revoked a shared calendar in Outlook, the calendar stayed mounted and accessible.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Zimbra Collaboration Suite (ZCS)to a version that resolves this vulnerability.Fixed in 8.8.15 Patch 7
Event History
Frequently Asked Questions
What is CVE-2020-8633?
CVE-2020-8633 is an issue discovered in Zimbra Collaboration Suite (ZCS) before 8.8.15 Patch 7 that allows shared calendars to remain mounted and accessible after being revoked in Outlook.
What is the severity of CVE-2020-8633?
CVE-2020-8633 has a severity rating of 5.3 (Medium).
Which software versions are affected by CVE-2020-8633?
CVE-2020-8633 affects Zimbra Collaboration Suite (ZCS) versions up to and including 8.8.15.
How can I fix CVE-2020-8633?
You can fix CVE-2020-8633 by applying Patch 7 for Zimbra Collaboration Suite (ZCS) version 8.8.15.
Where can I find more information about CVE-2020-8633?
You can find more information about CVE-2020-8633 on the Zimbra Collaboration Suite Wiki page: https://wiki.zimbra.com/wiki/Zimbra_Releases/8.8.15/P7