S4E just found a medium ssl lucky13 vulnerability scanner
critical·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2022-37042 Scanner

CVE-2022-37042 scanner - Remote Code Execution (RCE) vulnerability in Zimbra Collaboration Suite (ZCS)

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.5k
Times Used
continuous scan runs
3.4k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVECVE-2022-37042
9.8
CVSScritical
Exploitable remotely over the internet · no authentication required.

Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it. By bypassing authentication (i.e., not having an authtoken), an attacker can upload arbitrary files to the system, leading to directory traversal and remote code execution. NOTE: this issue exists because of an incomplete fix for CVE-2022-27925.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

Zimbra Collaboration Suite (ZCS) is a well-known software solution used by individuals and businesses for email, calendar, and enterprise collaboration. ZCS offers an array of features and services that enable organizations to communicate more effectively and efficiently. Specifically, ZCS provides a secure and reliable platform to manage email, calendar and contact information, document sharing, and instant messaging for businesses of all sizes.

The CVE-2022-37042 vulnerability detected in Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0 is a serious security flaw that could be exploited by hackers. This vulnerability allows an attacker to bypass authentication by not having an authtoken, and upload arbitrary files to the system, thus leading to directory traversal and remote code execution. This issue exists due to an incomplete fix for CVE-2022-27925, which was intended to resolve similar issues.

When this vulnerability is exploited, it could lead to severe consequences, such as the potential compromise of sensitive data, including user credentials and confidential company information. The attacker could gain unauthorized access to the system and manipulate data or install additional malware that could further harm the organization. This can lead to significant financial loss for businesses, damage to brand reputation, and possible compliance violations.

In conclusion, as cybersecurity is becoming increasingly crucial in today's digital era, it is essential to be aware of potential security threats and take the necessary measures to protect your digital assets. With the pro features of the s4e.io platform, businesses can easily and quickly learn about vulnerabilities in their digital assets, stay informed, and keep their systems secure. So, take advantage of the platform, and stay ahead of the curve!

 

REFERENCES

Solution Advice

To protect against this vulnerability, Zimbra Collaboration Suite (ZCS) recommends the following precautions:

  • Ensure that your system is running with the latest patches and software updates
  • Implement Access Control List (ACL) rules to allow authenticated users only to upload files
  • Configure email filters to detect suspicious activity and report to IT security
  • Conduct regular penetration testing and vulnerability assessments

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.