CVE-2016-5721

MEDIUM

Zimbra Collaboration <8.7.0 - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in Zimbra Collaboration before 8.7.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Scores

CVSS v3 6.1
EPSS 0.0030
EPSS Percentile 53.3%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Classification

CWE
CWE-79
Status published

Affected Products (2)

zimbra/zimbra_collaboration_server < 8.6.0
n/a/n/a

Timeline

Published Aug 29, 2016
Tracked Since Feb 18, 2026