Tag Archives: Zimbra

Attackers exploit critical Zimbra vulnerability using cc’d email addresses

Attackers are actively exploiting a critical vulnerability in mail servers sold by Zimbra in an attempt to remotely execute malicious commands that install a backdoor, researchers warn. The vulnerability, tracked as CVE-2024-45519, resides in the Zimbra email and collaboration server used by medium and large organizations. When an admin manually changes default settings to enable… Read More »

Unpatched Zimbra flaw under attack is letting hackers backdoor servers

reader comments 9 with 8 posters participating Share this story An unpatched code-execution vulnerability in the Zimbra Collaboration software is under active exploitation by attackers using the attacks to backdoor servers. The attacks began no later than September 7, when a Zimbra customer reported a few days later that a server running the company’s Amavis… Read More »