PoC Index

CVE-2022-27925

KEV RANSOMWAREHIGH 7.2EPSS 98.7%

Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it. An authenticated user with administrator rights has the ability to upload arbitrary files to the system, leading to directory traversal.

CVSS v3.1
7.2 HIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS v3.1
7.2 HIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS v2.0
6.5 MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
EPSS
98.68% chance of exploitation in the next 30 days, 100th percentile
CISA KEV
added 2022-08-11, used in ransomware campaigns
Published
2022-04-20
Updated
2026-08-04

Proof-of-concept exploits (13)

Metasploit modules (1)

References

Related