Security News > 2024 > October > Critical Zimbra RCE flaw exploited to backdoor servers using emails

2024-10-02 14:15
Hackers are actively exploiting a recently disclosed RCE vulnerability in Zimbra email servers that can be triggered simply by sending specially crafted emails to the SMTP server. [...]
News URL
Related news
- Critical Langflow RCE flaw exploited to hack AI app servers (source)
- Critical Ingress NGINX Controller Vulnerability Allows RCE Without Authentication (source)
- CentreStack RCE exploited as zero-day to breach file sharing servers (source)
- Gladinet’s Triofox and CentreStack Under Active Exploitation via Critical RCE Vulnerability (source)
- Critical flaws fixed in Nagios Log Server (source)
- Critical Erlang/OTP SSH pre-auth RCE is 'Surprisingly Easy' to exploit, patch now (source)
- Critical Erlang/OTP SSH RCE bug now has public exploits, patch now (source)
- Critical Commvault RCE vulnerability fixed, PoC available (CVE-2025-34028) (source)
- Hackers Exploit Critical Craft CMS Flaws; Hundreds of Servers Likely Compromised (source)
- Samsung MagicINFO 9 Server RCE flaw now exploited in attacks (source)