CVE-2026-73570: Unauthenticated RCE in Zimbra, 8.9 rating 🔥
A Zimbra vulnerability disclosed last week is now being actively exploited in the wild. It allows an unauthenticated attacker to execute arbitrary OS commands as the Zimbra user via specially crafted requests. Successful exploitation requires the optional zimbra-snmp package and enabled SNMP notifications.
Search at Netlas.io:
👉 Link: https://nt.ls/RfXS9
👉 Dork: tag.name:"zimbra"
Vendor's advisory:
https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories
Post #616
542

- ❤ 3
- 🔥 3