MIRAGE
Threat IntelligenceCVEs › CVE-2022-24682

CVE-2022-24682 — exposed on the internet

Internet exposure observed by OffSeq scans · last 30 days

3
Exposed hosts
6.1
CVSS
30.9%
EPSS

Found on 3 internet-exposed hosts by OffSeq scans; no in-the-wild exploitation has been observed against OffSeq honeypots in this window.

About CVE-2022-24682

An issue was discovered in the Calendar feature in Zimbra Collaboration Suite 8.8.x before 8.8.15 patch 30 (update 1), as exploited in the wild starting in December 2021. An attacker could place HTML containing executable JavaScript inside element attributes. This markup becomes unescaped, causing arbitrary markup to be injected into the document.

CWE-116

OffSeq internet scanning found CVE-2022-24682 on 3 exposed hosts in the last 30 days. OffSeq honeypots have not recorded in-the-wild exploitation of this CVE in the current window — this page tracks its exposure footprint and status; if exploitation begins, the live honeypot signal will appear here.

Exposed-host countries

Exposed via

zimbra

Open the live CVE-2022-24682 view →

References