Similar Stories to Attackers Exploit Critical Zimbra Vulnerability Using Cc’d Email Addresses on Bing News

Attackers are actively exploiting a critical vulnerability in mail servers sold by Zimbra in an attempt to remotely execute malicious commands that install a backdoor, researchers warn. The vulnerability, tracked as CVE-2024-45519, resides in the Zimbra email and collaboration server used by medium and large organizations. When an admin manually changes default settings to enable the postjournal service, attackers can execute commands by sending maliciously formed emails to an address hosted on the server.

Topics:  easy   on tuesday   security   ivan kwiatkowski    he   ip   proofpoint   comments   zimbra   attackers   exploit   critical   vulnerability   cc   email   malicious   hosted   postjournal   address   server   execute   commands   install   researchers   
BING NEWS:
  • Critical Ivanti RCE flaw with public exploit now used in attacks
    CISA warned today that a critical Ivanti vulnerability that can let threat actors gain remote code execution on vulnerable Endpoint Manager (EPM) appliances is now actively exploited in attacks.
    10/2/2024 - 7:55 am | View Link
  • Attackers exploit critical vulnerability recently patched in Zimbra servers
    Despite the mitigating factors, CVE-2024-45519 remains a potential threat since attacks often improve over time as more people test it. Anyone using Zimbra should install the patch as soon as ...
    10/2/2024 - 6:50 am | View Link
  • Critical Zimbra RCE flaw exploited to backdoor servers using emails
    Hackers are actively exploiting a recently disclosed RCE vulnerability in Zimbra email servers that can be triggered simply by sending specially crafted emails to the SMTP server.
    10/2/2024 - 3:15 am | View Link
  • Researchers Warn of Ongoing Attacks Exploiting Critical Zimbra Postjournal Flaw
    The critical issue was addressed by Zimbra in versions 8.8.15 Patch 46, 9.0.0 Patch 41, 10.0.9, and 10.1.1 released on September 4, 2024. A security researcher named lebr0nli (Alan Li) has been ...
    10/2/2024 - 1:56 am | View Link
  • 'Patch yesterday': Zimbra mail servers under siege through RCE vuln
    Attacks began the day after public disclosure "Patch yesterday" is the advice from infosec researchers as the latest critical vulnerability affecting Zimbra mail servers is now being ...
    10/1/2024 - 11:50 pm | View Link
  • More

 

Welcome to Wopular!

Welcome to Wopular

Wopular is an online newspaper rack, giving you a summary view of the top headlines from the top news sites.

Senh Duong (Founder)
Wopular, MWB, RottenTomatoes

Subscribe to Wopular's RSS Fan Wopular on Facebook Follow Wopular on Twitter Follow Wopular on Google Plus

MoviesWithButter : Our Sister Site

More Business News