CVE-2023-29382: Code Injection
An issue in Zimbra Collaboration ZCS v.8.8.15 and v.9.0 allows an attacker to execute arbitrary code via the sfdcpreauth.jsp component.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-29382?
CVE-2023-29382 is considered a critical vulnerability due to the potential for arbitrary code execution.
How do I fix CVE-2023-29382?
To fix CVE-2023-29382, update your Zimbra Collaboration software to the latest version or apply the recommended patches provided by the vendor.
Which versions are affected by CVE-2023-29382?
CVE-2023-29382 affects Zimbra Collaboration versions 8.8.15 and 9.0.0 including various patch revisions.
What impact does CVE-2023-29382 have on my system?
CVE-2023-29382 allows attackers to execute arbitrary code, potentially compromising the integrity and confidentiality of your system.
Is CVE-2023-29382 publicly known?
Yes, CVE-2023-29382 is publicly disclosed and documented, allowing for awareness and mitigation efforts among users of affected software.