CVE-2026-73570
CISA Adds One Known Exploited Vulnerability to Catalog
A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.20 when the optional zimbra-snmp package is installed and SNMP notifications are enabled. Due to improper sanitization of untrusted input during SNMP notification processing, an unauthenticated attacker can send specially crafted SMTP requests that may result in execution of arbitrary operating system commands as the Zimbra user.
Coverage 3 sources
-
2026-08-21
CISA Cybersecurity Advisories
high
CISA Adds One Known Exploited Vulnerability to Catalog
CISA added CVE-2026-73570 to its Known Exploited Vulnerabilities Catalog, citing evidence of active exploitation.
-
2026-08-25
Help Net Security
high
Unpatched Zimbra servers are falling to CVE-2026-73570 attacks
Unknown attackers are exploiting CVE-2026-73570 to compromise unpatched Zimbra servers.
-
2026-08-25
GovInfoSecurity
high
Zimbra Exploitation Spreads as Thousands Stay Unpatched
At least 267 Zimbra installations compromised via CVE-2026-73570, 8,000+ remain unpatched.
-
2026-08-30
Help Net Security
medium
Week in review: Compromised Zimbra servers, previously patched Citrix NetScaler flaw exploited
Compromised Zimbra servers and exploited Citrix NetScaler flaw reported.
Also covered
- CVE-2026-86950 Apple iOS and iPadOS
- CVE-2023-6548 Cloud Software Group NetScaler ADC
- CVE-2023-25608 Fortinet FortiAP-W2
- CVE-2026-88772 Memory overflow vulnerability leading to Remote Code Execution or Denial of Service
- CVE-2026-88771 A remote code execution vulnerability exists due to improper input validation, which can allow an unauthenticated attacker to execute arbitrary commands