CNNVD-202507-1343 Information

CNNVD ID

CNNVD-202507-1343

CVE-2025-53645

  • CNNVD Published: 2025-07-09

Description (Chinese)

Zimbra Collaboration Suite(ZCS)是Zimbra公司的一款开源协同办公套件。该产品包括WebMail、日历、通信录等。 Zimbra Collaboration Suite 9.0.0 Patch 46之前版本、10.0.15之前版本和10.1.9之前版本存在安全漏洞,该漏洞源于路径段处理不当,可能导致拒绝服务攻击。

Description (English)

Zimbra Collaboration Suite (ZCS) is an open-source co-location package for Zimbra. The product includes WebMail, calendars, correspondence records, etc. Zimbra Collaboration System 9.0.0 Patch 46, 10.0.15 and 10.1.9 had a security loophole, which stemmed from the mishandling of the road segment and could lead to a denial of service attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Zimbra

Published

2025-07-09

Last Modified

2026-02-24

References

https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories https://wiki.zimbra.com/wiki/Zimbra_Releases/10.1.9#Security_Fixes https://wiki.zimbra.com/wiki/Zimbra_Responsible_Disclosure_Policy https://wiki.zimbra.com/wiki/Zimbra_Releases/10.0.15#Security_Fixes https://wiki.zimbra.com/wiki/Security_Center https://wiki.zimbra.com/wiki/Zimbra_Releases/9.0.0/P46#Security_Fixes https://access.redhat.com/security/cve/cve-2025-53645

Patch

https://wiki.zimbra.com/wiki/Security_Center

Share on: