S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Dec 16, 2023

CVE-2019-9670 Scanner

Detects 'XML External Entity (XXE)' vulnerability in Zimbra Collaboration Suite (ZCS) affects v. 8.7.x before 8.7.11p10.

Est. Time~15 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.4k
Times Used
continuous scan runs
4.7k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVECVE-2019-9670
9.8
CVSScritical
Exploitable remotely over the internet · no authentication required.

mailboxd component in Synacor Zimbra Collaboration Suite 8.7.x before 8.7.11p10 has an XML External Entity injection (XXE) vulnerability, as demonstrated by Autodiscover/Autodiscover.xml.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
n/aby n/a
n/a
Updated Aug 21, 2026View on NVD →
Detail

The Synacor Zimbra Collaboration Suite is an extensive and robust productivity suite that is designed to meet the needs of businesses of all sizes. It is used by companies to improve inter-company communication and collaboration, and offers various features such as email, calendaring, file-sharing, video-conferencing and instant messaging. With the rise of remote working and the need for virtual teams, the Zimbra Collaboration Suite is becoming increasingly popular.

However, even with its extensive functionality, the Zimbra Collaboration Suite is not invulnerable to cyber-attacks. One such vulnerability that has been detected in this software is the CVE-2019-9670, an XML External Entity injection (XXE) vulnerability that affects mailboxd components before the 8.7.11p10-version.

When this vulnerability is exploited, an attacker gains the ability to read arbitrary files on the system leading to sensitive data leaks. By using specially crafted XML documents, these attackers can make a request to the mailboxd component, tricking it into executing the desired files. At this point, sensitive information could be stolen or hijacked, leading to potential data breaches or espionage.

In conclusion, staying informed and ahead of potential vulnerabilities to digital assets is critical for organizations today. It is not enough to merely remain vigilant, as threats continue to evolve and advance. With s4e.io, however, businesses can easily and quickly stay up-to-date on any existing or potential vulnerabilities. The platform's pro features deliver a comprehensive range of security solutions that are tailored to meet the needs of each organization. Therefore, it is imperative for any business using digital assets to invest in such applications to ensure maximum security of data and assets.

 

REFERENCES

Solution Advice

Organizations can protect themselves from these attacks by implementing the following precautions:

  • Upgrade to the latest version of the Zimbra Collaboration Suite as soon as possible.
  • Filter out all unnecessary XML entities from your software.
  • Minimize the amount of XML parsers utilized.
  • Restrict any unnecessary access to the mailbox component.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2019-9670 scanner - XML External Entity (XXE) vulnerability in Zimbra Collaboration Suite (ZCS) | S4E