← Back to CVE List

CVE-2024-45512

Published: 2024-11-21T16:15Z
Last Modified: 2024-11-21T18:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An issue was discovered in webmail in Zimbra Collaboration (ZCS) through 10.1. An attacker can exploit this vulnerability by creating a folder in the Briefcase module with a malicious payload and sharing it with a victim. When the victim interacts with the folder share notification, the malicious script executes in their browser. This stored Cross-Site Scripting (XSS) vulnerability can lead to unauthorized actions within the victim's session. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt