CVE-2023-34193: Zimbra Collaboration

High severity, CVSS 8.8. EPSS: 1.2% chance of exploitation in the next 30 days.

File Upload vulnerability in Zimbra ZCS 8.8.15 allows an authenticated privileged user to execute arbitrary code and obtain sensitive information via the ClientUploader function.

Affected products

  • Zimbra Collaboration: version 8.8.15 only

Published 2023-07-06. Last modified 2026-06-17.