CISA Known Exploited Vulnerability

CVE-2022-27924 Ransomware

Synacor · Zimbra Collaboration Suite (ZCS)

Synacor Zimbra Collaboration Suite (ZCS) Command Injection Vulnerability

Date added
BOD 22-01 due date
CWE CWE-93
Ransomware Known

CISA description

Synacor Zimbra Collaboration Suite (ZCS) allows an attacker to inject memcache commands into a targeted instance which causes an overwrite of arbitrary cached entries.

Required action

Apply updates per vendor instructions.