Report
Zimbra zero-day exposes mail servers to attack
Neowin reports that an unauthenticated command-injection flaw in Zimbra's SNMP notification path can let attackers steal session tokens and install persistent webshells on mail servers.
TLDR
Neowin reports, citing a Microsoft warning, that a Zimbra zero-day exposes mail servers to attack. It says unauthenticated command injection through the SNMP notification path can let attackers steal session tokens and install persistent webshells.
Combined views
6.8K
2 Sources, first seen 12h ago
2 likes3 comments