Skip to main content
CyberConfirmedMediumDeveloping
9.5

Critical command injection vulnerability identified in Zimbra Collaboration Suite

Zimbra has released patches for a critical command injection vulnerability affecting servers with SNMP notifications enabled, alongside fixes for four XSS flaws and a mail-forwarding bypass. The extent of active exploitation remains unconfirmed, but the severity of the injection flaw poses a significant risk to enterprise email infrastructure.

The Hacker Newsabout 8 hours agoCredibility 54%View source

Score Breakdown

Mosaic Score9.5
Confidence0.9
Significance0.5
Source credibility0.5
Source

Part of a situation

Related signals

8 found