CVE Published: 17/10/2022 |
CVE Updated: 16/09/2024 |
CVE Year: 2022 Source: rapid7 |
Vendor: Synacor |
Product: Zimbra Collaboration Suite (ZCS) Status : PUBLISHED
CVE-2022-3569 Description
Due to an issue with incorrect sudo permissions, Zimbra Collaboration Suite (ZCS) suffers from a local privilege escalation issue in versions 9.0.0 and prior, where the \'zimbra\' user can effectively coerce postfix into running arbitrary commands as \'root\'.