Skip to main content

Share story

Security

CERT Polska warns of active exploitation of Zimbra command-injection flaw

CERT Polska warns of active exploitation of Zimbra command-injection flaw Image: Primary
CERT Polska warned that attackers are exploiting CVE-2026-73570, a critical Zimbra Collaboration Suite vulnerability. Zimbra released version 10.1.20 on July 20 to patch the flaw, which can allow unauthenticated remote code execution through command injection in SNMP notification processing when notifications are enabled. Shadowserver tracks more than 12,100 Zimbra servers exposed online, though the source says it is not known how many are patched or honeypots.
Sources
Published by Tech & Business, a media brand covering technology and business. This story was sourced from BleepingComputer and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
Products Policy
Products Policy

Boeing awarded US$20-billion Navy fighter development contract

Boeing has been awarded a US$20-billion US Navy contract to develop the F/A-XX sixth-generation fighter, New Atlas reports. Boeing beat rival Northrop Grumman for the contract. The Navy needs a multirole aircraft that can operate...

Products
Products

Valley National agrees to buy Bluevine for $340M

Valley National Bancorp has agreed to acquire New Jersey-based Bluevine for $340M, CTech reports. Bluevine provides digital banking and payments services to 175K small and medium-sized businesses in the US. The acquisition would ...

Security AI
Security AI

Proofpoint links TA419 phishing campaigns to US AI policy targets

Proofpoint has attributed credential phishing campaigns against U.S. AI experts at think tanks, universities and legal organizations to TA419, a group it describes as China-aligned and motivated by espionage. Its analysis describe...