logo

CISA Warns Active Exploitation of Zimbra & Ivanti Endpoint Manager Vulnerability

ID: 1703ef64-e4c9-56c7-93b3-254c782139a8

STIX ID: report--1703ef64-e4c9-56c7-93b3-254c782139a8

Feed Name: cybersecurityNews.com

Threat Score
78/100

Date Published: 2024-10-04

Date Updated: 2026-04-21

Author: Dhivya

...
...

CISA issued an urgent alert about active exploitation of two critical vulnerabilities: CVE-2024-45519 in Synacor Zimbra Collaboration (postjournal service allowing unauthenticated remote command execution) and CVE-2024-29824 in Ivanti Endpoint Manager (SQL injection enabling remote code execution). Organizations are advised to apply vendor mitigations immediately or discontinue use, with CISA remediation deadlines of October 24, 2024 (Zimbra) and October 23, 2024 (Ivanti).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.