S4E just found a high top 10 tcp port service scan
medium·Product Based Web Vulnerabilities·Updated Mar 4, 2024

CVE-2022-27926 Scanner

CVE-2022-27926 scanner - Cross Site Scripting vulnerability in Zimbra Collaboration

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
4
Times Used
by S4E users
4
Assets Scanned
domains & IPs
4
Vulnerabilities Found
confirmed findings
References
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVECVE-2022-27926
6.1
CVSSmedium
Exploitable remotely over the internet · no authentication required · user interaction needed.

A reflected cross-site scripting (XSS) vulnerability in the /public/launchNewWindow.jsp component of Zimbra Collaboration (aka ZCS) 9.0 allows unauthenticated attackers to execute arbitrary web script or HTML via request parameters.

Attack Vector
Network
Privileges Req.
None
User Interaction
Required
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

Zimbra Collaboration (ZCS) is a popular open-source email, calendar, and collaboration suite used by enterprises, service providers, and educational institutions worldwide. It offers a feature-rich web client experience, with capabilities ranging from email and calendar to file sharing, instant messaging, and video conferencing. Zimbra is known for its flexibility, scalability, and extensive integration options, making it a comprehensive solution for organizations looking to manage their communication and collaboration needs efficiently. Its widespread adoption underscores the importance of maintaining strong security measures to protect sensitive information and user privacy.

CVE-2022-27926 is a reflected cross-site scripting (XSS) vulnerability identified in Zimbra Collaboration (ZCS) version 9.0. This security flaw is present in the /public/launchNewWindow.jsp component, allowing attackers to inject arbitrary web scripts or HTML via request parameters. Such vulnerabilities pose significant risks as they can be exploited to execute malicious scripts in the context of a victim's browser, potentially leading to unauthorized access to sensitive data, session hijacking, and other malicious activities.

The vulnerability arises due to improper sanitization of user-supplied input in the 'errCode' parameter of the error.jsp page. By crafting a malicious URL containing a specific XSS payload, an attacker can trigger the execution of arbitrary JavaScript code in the browser of any user who clicks on the link. This exploit can lead to various security breaches, including the theft of session cookies, personal data, and other exploitable information stored in the browser or associated with the user's session on the Zimbra Collaboration platform.

Exploiting this XSS vulnerability in Zimbra Collaboration can have severe consequences, including but not limited to, compromise of user accounts, unauthorized access to sensitive emails and documents, alteration of user data, and the spreading of malware to other users within the organization. The impact is particularly concerning in environments where Zimbra serves as the central hub for communication and collaboration, emphasizing the need for prompt remediation.

S4E's platform offers a robust solution for detecting and mitigating vulnerabilities like CVE-2022-27926 in Zimbra Collaboration and other critical systems. By becoming a member, organizations benefit from our cutting-edge scanning technology and cyber threat exposure management services, helping to safeguard their digital assets against the latest security threats. Our comprehensive approach to cybersecurity ensures that vulnerabilities are identified and addressed promptly, minimizing the risk to your organization and maintaining trust with your users.

 

References

Solution Advice
  1. Immediately apply the latest security patches or updates provided by Zimbra for ZCS, specifically addressing this XSS vulnerability.
  2. Conduct regular security assessments and penetration testing to identify and remediate potential vulnerabilities in your Zimbra installation.
  3. Implement content security policies (CSP) to mitigate the impact of XSS attacks by restricting the sources from which scripts can be executed.
  4. Educate users about the risks associated with clicking on unknown or suspicious links to prevent exploitation of XSS and other web-based vulnerabilities.
  5. Monitor and review application logs for unusual or malicious activity that may indicate attempted or successful exploitation of vulnerabilities.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2022-27926 scanner - Cross Site Scripting vulnerability in Zimbra Collaboration S4E