logo

Poland’s CERT Warns of Active Exploitation of Critical Zimbra Collaboration Suite Flaw

ID: bd3f2bee-cc81-5a2c-af48-d457c4f16353

STIX ID: report--bd3f2bee-cc81-5a2c-af48-d457c4f16353

Feed Name: Security Affairs

Threat Score
85/100

Date Published: 2026-08-21

Date Updated: 2026-08-21

Author: Pierluigi Paganini

...
...

CERT Polska warns of active exploitation of CVE-2026-73570, a critical unauthenticated command-injection/RCE in Zimbra Collaboration Suite that affects systems with the zimbra-snmp package and the swatchdog service enabled; Zimbra released patch 10.1.20 on 20 July 2026. The advisory includes IOCs, recommended log and file checks (e.g., /var/log/zimbra.log and webapps/tmp directories) and remediation guidance, while Shadowserver notes ~12,100 Zimbra servers reachable from the Internet, making unpatched instances a high remediation priority.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.