Vulnerability Database

309,237

Total vulnerabilities in the database

CVE-2024-50599

A reflected Cross-Site Scripting (XSS) vulnerability has been identified in Zimbra Collaboration Suite (ZCS) 8.8.15, affecting one of the webmail calendar endpoints. This arises from improper handling of user-supplied input, allowing an attacker to inject malicious code that is reflected back in the HTML response.

  • Published: Nov 7, 2024
  • Updated: Nov 16, 2025
  • CVE: CVE-2024-50599
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 6.1
  • AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Software From Fixed in
synacor / zimbra_collaboration_suite 8.8.15-p1 8.8.15-p1.x
synacor / zimbra_collaboration_suite 8.8.15 8.8.15.x
synacor / zimbra_collaboration_suite 8.8.15-p6 8.8.15-p6.x
synacor / zimbra_collaboration_suite 8.8.15-p5 8.8.15-p5.x
synacor / zimbra_collaboration_suite 8.8.15-p3 8.8.15-p3.x
synacor / zimbra_collaboration_suite 8.8.15-p4 8.8.15-p4.x
synacor / zimbra_collaboration_suite 8.8.15-p10 8.8.15-p10.x
synacor / zimbra_collaboration_suite 8.8.15-p11 8.8.15-p11.x
synacor / zimbra_collaboration_suite 8.8.15-p12 8.8.15-p12.x
synacor / zimbra_collaboration_suite 8.8.15-p13 8.8.15-p13.x
synacor / zimbra_collaboration_suite 8.8.15-p14 8.8.15-p14.x
synacor / zimbra_collaboration_suite 8.8.15-p15 8.8.15-p15.x
synacor / zimbra_collaboration_suite 8.8.15-p16 8.8.15-p16.x
synacor / zimbra_collaboration_suite 8.8.15-p17 8.8.15-p17.x
synacor / zimbra_collaboration_suite 8.8.15-p2 8.8.15-p2.x
synacor / zimbra_collaboration_suite 8.8.15-p7 8.8.15-p7.x
synacor / zimbra_collaboration_suite 8.8.15-p8 8.8.15-p8.x
synacor / zimbra_collaboration_suite 8.8.15-p9 8.8.15-p9.x
synacor / zimbra_collaboration_suite 8.8.15-p18 8.8.15-p18.x
synacor / zimbra_collaboration_suite 8.8.15-p19 8.8.15-p19.x
synacor / zimbra_collaboration_suite 8.8.15-p20 8.8.15-p20.x
synacor / zimbra_collaboration_suite 8.8.15-p21 8.8.15-p21.x
synacor / zimbra_collaboration_suite 8.8.15-p22 8.8.15-p22.x
synacor / zimbra_collaboration_suite 8.8.15-p23 8.8.15-p23.x
synacor / zimbra_collaboration_suite 8.8.15-p24 8.8.15-p24.x
synacor / zimbra_collaboration_suite 8.8.15-p25 8.8.15-p25.x
synacor / zimbra_collaboration_suite 8.8.15-p26 8.8.15-p26.x
synacor / zimbra_collaboration_suite 8.8.15-p27 8.8.15-p27.x
synacor / zimbra_collaboration_suite 8.8.15-p28 8.8.15-p28.x
synacor / zimbra_collaboration_suite 8.8.15-p29 8.8.15-p29.x
synacor / zimbra_collaboration_suite 8.8.15-p30 8.8.15-p30.x
synacor / zimbra_collaboration_suite 8.8.15-p31 8.8.15-p31.x
synacor / zimbra_collaboration_suite 8.8.15-p31.1 8.8.15-p31.1.x
synacor / zimbra_collaboration_suite 8.8.15-p32 8.8.15-p32.x
synacor / zimbra_collaboration_suite 8.8.15-p33 8.8.15-p33.x
synacor / zimbra_collaboration_suite 8.8.15-p34 8.8.15-p34.x
synacor / zimbra_collaboration_suite 8.8.15-p35 8.8.15-p35.x
synacor / zimbra_collaboration_suite 8.8.15-p36 8.8.15-p36.x
synacor / zimbra_collaboration_suite 8.8.15-p37 8.8.15-p37.x
synacor / zimbra_collaboration_suite 8.8.15-p38 8.8.15-p38.x
synacor / zimbra_collaboration_suite 8.8.15-p39 8.8.15-p39.x
synacor / zimbra_collaboration_suite 8.8.15-p40 8.8.15-p40.x
synacor / zimbra_collaboration_suite 8.8.15-p41 8.8.15-p41.x
synacor / zimbra_collaboration_suite 8.8.15-p42 8.8.15-p42.x
synacor / zimbra_collaboration_suite 8.8.15-p43 8.8.15-p43.x
synacor / zimbra_collaboration_suite 8.8.15-p44 8.8.15-p44.x
synacor / zimbra_collaboration_suite 8.8.15-p45 8.8.15-p45.x