In Zimbra Collaboration Suite Network Edition versions < 9.0.0 P10 and 8.8.15 P17, there exists an XXE vulnerability in the saml consumer store extension, which is vulnerable to XXE attacks. This has been fixed in Zimbra Collaboration Suite Network edition 9.0.0 Patch 10 and 8.8.15 Patch 17.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-12-17T03:52:42

Updated: 2020-12-17T03:52:42

Reserved: 2020-12-11T00:00:00


Link: CVE-2020-35123

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-12-17T04:15:12.840

Modified: 2020-12-22T17:26:55.967


Link: CVE-2020-35123

JSON object: View

cve-icon Redhat Information

No data.

CWE