CVE-2025-25064 Information

Description

SQL injection vulnerability in the ZimbraSyncService SOAP endpoint in Zimbra Collaboration 10.0.x before 10.0.12 and 10.1.x before 10.1.4.

Reference

https://wiki.zimbra.com/wiki/Zimbra_Releases/10.0.12#Security_Fixes https://wiki.zimbra.com/wiki/Zimbra_Releases/10.1.4#Security_Fixes https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories

Share on: