PT-2018-14286 · Zimbra · Zimbra Collaboration

Published

2018-10-03

·

Updated

2020-08-24

·

CVE-2018-17938

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Zimbra Collaboration versions prior to 8.8.10 GA
Description The issue allows text content spoofing via a loginErrorCode value.
Recommendations For versions prior to 8.8.10 GA, update to version 8.8.10 GA or later to resolve the issue.

Fix

Insufficient Verification of Data Authenticity

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-17938

Affected Products

Zimbra Collaboration