Vulnerabilities > Zimbra > ZM Mailbox > 8.7.7

DATE CVE VULNERABILITY TITLE RISK
2020-03-20 CVE-2020-10194 Incorrect Authorization vulnerability in Zimbra Zm-Mailbox
cs/service/account/AutoCompleteGal.java in Zimbra zm-mailbox before 8.8.15.p8 allows authenticated users to request any GAL account.
network
low complexity
zimbra CWE-863
4.0