CISA Warns Active Exploitation of Zimbra & Ivanti Endpoint Manager Vulnerability
ID: 1703ef64-e4c9-56c7-93b3-254c782139a8
STIX ID: report--1703ef64-e4c9-56c7-93b3-254c782139a8
Feed Name: cybersecurityNews.com
Threat Score
CISA issued an urgent alert about active exploitation of two critical vulnerabilities: CVE-2024-45519 in Synacor Zimbra Collaboration (postjournal service allowing unauthenticated remote command execution) and CVE-2024-29824 in Ivanti Endpoint Manager (SQL injection enabling remote code execution). Organizations are advised to apply vendor mitigations immediately or discontinue use, with CISA remediation deadlines of October 24, 2024 (Zimbra) and October 23, 2024 (Ivanti).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
