AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2022-37042.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSUnscoredNo severity score in this snapshot.
EXPLOITATION STATUSCISA known exploitedAdded Aug 11, 2022
RECORD STATUSAwaiting NVD dataModified Aug 11, 2022

Disclosure summary

Synacor Zimbra Collaboration Suite (ZCS) contains an authentication bypass vulnerability in MailboxImportServlet. This vulnerability was chained with CVE-2022-27925 which allows for unauthenticated remote code execution.

CISA remediation guidance

Apply updates per vendor instructions.

Source-specific records & product guidance

Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.

Rapid7 Blog · RSS-087d9d059be8baf7b6734d576c5516c0ae3

Open original source · Updated Sep 24, 2026

When Business Email Compromise Starts Rewriting Reality

CVE mention in publisher metadata; check the original affected versions.

Original records & references

PUBLISHED 2022-08-11T00:00:00-04:00
MODIFIED 2022-08-11T00:00:00-04:00
INGESTED 2026-10-06T11:42:58-04:00