Home > Pilot Support > cve20207796 zimbra collaboration suite full > cve20207796 zimbra collaboration suite full

Cve20207796 Zimbra Collaboration Suite Full !!link!! <CONFIRMED – BLUEPRINT>

A successful exploit can lead to serious consequences, including:

While the vulnerability was first identified in 2020, it remains a major threat. , citing active exploitation in the wild. Organizations were given a due date of March 10, 2026, to apply mitigations. Affected Versions cve20207796 zimbra collaboration suite full

The vulnerability is specifically linked to the WebEx Zimlet ( com_zimbra_webex ) when the Zimlet JSP functionality is enabled. A successful exploit can lead to serious consequences,

For more technical details and patch instructions, visit the Zimbra Tech Center Release Notes . CVE-2020-7796 Detail - NVD It allows unauthenticated remote attackers to force the

CVE-2020-7796 is a server-side request forgery (SSRF) vulnerability in the Zimbra Collaboration Suite (ZCS) . It allows unauthenticated remote attackers to force the server to make HTTP requests to arbitrary internal or external hosts, effectively using the server as a proxy to bypass firewalls or access sensitive internal data. Vulnerability Details CVE ID: CVE-2020-7796 CVSS Score: 9.8 (Critical) Vulnerability Type: SSRF (CWE-918)

In some scenarios, it may be possible to steal login credentials or inject malware through chained exploits. Current Threat Status

Feedback
0 out of 2 found this helpful

Attachments

cve20207796 zimbra collaboration suite full AviKeyGenerator.exe
scroll to top icon