CVE-2022-27925
Zimbra Collaboration (ZCS) Arbitrary File Upload Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
13Exploited in Wild
YesDecision
Descriptions
Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it. An authenticated user with administrator rights has the ability to upload arbitrary files to the system, leading to directory traversal.
Zimbra Collaboration (también se conoce como ZCS) versiones 8.8.15 y 9.0, presenta la funcionalidad mboximport que recibe un archivo ZIP y extrae archivos de él. Un usuario autenticado con derechos de administrador presenta la capacidad de cargar archivos arbitrarios en el sistema, conllevando a un salto de directorio
Zimbra Collaboration (ZCS) contains flaw in the mboximport functionality, allowing an authenticated attacker to upload arbitrary files to perform remote code execution. This vulnerability was chained with CVE-2022-37042 which allows for unauthenticated remote code execution.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-03-25 CVE Reserved
- 2022-04-20 CVE Published
- 2022-08-11 Exploited in Wild
- 2022-08-13 First Exploit
- 2022-09-01 KEV Due Date
- 2024-08-03 CVE Updated
- 2024-11-12 EPSS Updated
CWE
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CAPEC
References (20)
URL | Date | SRC |
---|---|---|
https://github.com/Josexv1/CVE-2022-27925 | 2022-08-27 | |
https://github.com/mohamedbenchikh/CVE-2022-27925 | 2022-09-05 | |
https://github.com/vnhacker1337/CVE-2022-27925-PoC | 2022-08-13 | |
https://github.com/Inplex-sys/CVE-2022-27925 | 2024-02-20 | |
https://github.com/lolminerxmrig/CVE-2022-27925-Revshell | 2022-09-17 | |
https://github.com/touchmycrazyredhat/CVE-2022-27925-Revshell | 2022-09-17 | |
https://github.com/Chocapikk/CVE-2022-27925-Revshell | 2022-09-17 | |
https://github.com/akincibor/CVE-2022-27925 | 2022-09-12 | |
https://github.com/miko550/CVE-2022-27925 | 2022-08-19 | |
https://github.com/navokus/CVE-2022-27925 | 2022-08-20 | |
https://github.com/sanan2004/CVE-2022-27925 | 2024-08-19 | |
https://github.com/onlyHerold22/CVE-2022-27925-PoC | 2022-08-13 | |
http://packetstormsecurity.com/files/168146/Zimbra-Zip-Path-Traversal.html | 2024-08-03 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://wiki.zimbra.com/wiki/Security_Center | 2023-08-08 | |
https://wiki.zimbra.com/wiki/Zimbra_Releases/9.0.0/P24 | 2022-05-10 | |
https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories | 2023-08-08 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Zimbra Search vendor "Zimbra" | Collaboration Search vendor "Zimbra" for product "Collaboration" | 8.8.15 Search vendor "Zimbra" for product "Collaboration" and version "8.8.15" | - |
Affected
| ||||||
Zimbra Search vendor "Zimbra" | Collaboration Search vendor "Zimbra" for product "Collaboration" | 9.0.0 Search vendor "Zimbra" for product "Collaboration" and version "9.0.0" | - |
Affected
|