MEDIUM · 6.8

CVE-2013-5119

Zimbra Collaboration Suite (ZCS) 6.0.16 and earlier allows man-in-the-middle attackers to obtain access by sniffing the network and replaying the ZM_AUTH_TOKEN token.

Vulnerability Description

Zimbra Collaboration Suite (ZCS) 6.0.16 and earlier allows man-in-the-middle attackers to obtain access by sniffing the network and replaying the ZM_AUTH_TOKEN token.

CVSS Score

6.8

MEDIUM

AV:N/AC:M/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
SynacorZimbra Collaboration Suite<= 6.0.16

Related Weaknesses (CWE)

References

FAQ

What is CVE-2013-5119?

CVE-2013-5119 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Zimbra Collaboration Suite (ZCS) 6.0.16 and earlier allows man-in-the-middle attackers to obtain access by sniffing the network and replaying the ZM_AUTH_TOKEN token.

How severe is CVE-2013-5119?

CVE-2013-5119 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2013-5119?

Check the references section above for vendor advisories and patch information. Affected products include: Synacor Zimbra Collaboration Suite.