Poland’s CERT Warns of Active Exploitation of Critical Zimbra Collaboration Suite Flaw
ID: bd3f2bee-cc81-5a2c-af48-d457c4f16353
STIX ID: report--bd3f2bee-cc81-5a2c-af48-d457c4f16353
Feed Name: Security Affairs
CERT Polska warns of active exploitation of CVE-2026-73570, a critical unauthenticated command-injection/RCE in Zimbra Collaboration Suite that affects systems with the zimbra-snmp package and the swatchdog service enabled; Zimbra released patch 10.1.20 on 20 July 2026. The advisory includes IOCs, recommended log and file checks (e.g., /var/log/zimbra.log and webapps/tmp directories) and remediation guidance, while Shadowserver notes ~12,100 Zimbra servers reachable from the Internet, making unpatched instances a high remediation priority.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
