In Zimbra Collaboration (ZCS) before 10.1.17, weak cryptographic key generation vulnerability exists in the OnlyOffice integration. The zimbraDocumentEditingJwtSecret is generated using an insecure random number generator, resulting in insufficient entropy. An attacker who obtains a JWT signed with the generated secret may be able to recover the JWT signing secret through offline brute-force, potentially enabling JWT forgery.
oryginał ENCVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:H/A:NSynacor Zimbra Collaboration Suite
APPSynacor< 10.1.17
Powiązane podatności
RCE w usłudze postjournal Zimbra Collaboration Suite — command injection bez uwierzytelnienia
XSS umożliwiający RCE w Zimbra Collaboration Suite 8.8.15
Zimbra Collaboration – path traversal przez cpio umożliwia przejęcie kont
Zimbra ZCS: path traversal i RCE poprzez obejście uwierzytelnienia w mboximport
SSRF w Zimbra Collaboration Suite przez WebEx zimlet