← Back to browse · API

CVE-2022-24682

Severity
MEDIUM
CVSS
6.1
EPSS
0.30931
Risk score
60.23
CISA KEV
Yes
PoC
No
Published
2022-02-25
Modified
2022-02-25
First seen
2026-08-07
Aliases
EUVD-2022-29554, GHSA-FH88-2P7H-7G9H
Products
Synacor:Zimbra Collaborate Suite (ZCS), n/a:n/a n/a, synacor:zimbra_collaboration_suite
Sources
nvd CVE-2022-24682
euvd EUVD-2022-29554
cisa.gov CVE-2022-24682

Description

Synacor Zimbra Collaboration Suite (ZCS) contains a cross-site scripting (XSS) vulnerability in the Calendar feature that allows an attacker to execute arbitrary code.

References