CVE Database
/

CVE-2022-3569

Back to search

CVE-2022-3569

Published: Oct 17, 2022

Modified: May 13, 2025

PUBLISHED

Description

Due to an issue with incorrect sudo permissions, Zimbra Collaboration Suite (ZCS) suffers from a local privilege escalation issue in versions 9.0.0 and prior, where the 'zimbra' user can effectively coerce postfix into running arbitrary commands as 'root'.

VendorProductVersions

Synacor

Zimbra Collaboration Suite (ZCS)

affected
9.0.0 - <= 9.0.0

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now