Security News > 2024 > October > Weird Zimbra Vulnerability

Weird Zimbra Vulnerability
2024-10-03 11:04

Hackers can execute commands on a remote computer by sending malformed emails to a Zimbra mail server. It’s critical, but difficult to exploit. In an email sent Wednesday afternoon, Proofpoint researcher Greg Lesnewich seemed to largely concur that the attacks weren’t likely to lead to mass infections that could install ransomware or espionage malware. The researcher provided the following details: While the exploitation attempts we have observed were indiscriminate in targeting, we haven’t seen a large volume of exploitation attempts Based on what we have researched and observed, exploitation of this vulnerability is very easy, but we do not have any information about how reliable the exploitation is ...


News URL

https://www.schneier.com/blog/archives/2024/10/weird-zimbra-vulnerability.html

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Zimbra 7 0 39 16 8 63