High severity8.9CISA KEVNVD Advisory· Published Aug 13, 2026· Updated Aug 24, 2026
CVE-2026-73570
CVE-2026-73570
Description
A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.20 when the optional zimbra-snmp package is installed and SNMP notifications are enabled. Due to improper sanitization of untrusted input during SNMP notification processing, an unauthenticated attacker can send specially crafted SMTP requests that may result in execution of arbitrary operating system commands as the Zimbra user.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <10.1.20
Patches
Vulnerability mechanics
References
4- moje.cert.pl/komunikaty/2026/145/aktywnie-wykorzystywana-podatnosc-w-zimbra-collaboration-suite/nvdThird Party Advisory
- wiki.zimbra.com/wiki/Zimbra_Security_AdvisoriesnvdVendor Advisory
- wiki.zimbra.com/wiki/Security_CenternvdRelease Notes
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
12- When Business Email Compromise Starts Rewriting RealityRapid7 Blog · Sep 24, 2026
- Week in review: Compromised Zimbra servers, previously patched Citrix NetScaler flaw exploitedHelp Net Security · Aug 30, 2026
- Zimbra Exploitation Spreads as Thousands Stay UnpatchedGovInfoSecurity · Aug 26, 2026
- Unpatched Zimbra servers are falling to CVE-2026-73570 attacksHelp Net Security · Aug 25, 2026
- Exploited Zimbra Flaw Highlights Shrinking Window to PatchDark Reading · Aug 24, 2026
- Zimbra Collaboration Suite Vulnerability Actively Exploited in the WildCyber Security News · Aug 24, 2026
- ⚡ Weekly Recap: AI-Powered PLC Attacks, GitLab Attacks, Stripe Key Leaks and MoreThe Hacker News · Aug 24, 2026
- Zimbra CVE-2026-73570 Zero-Day Added to CISA KEV Under Active ExploitationVypr Intelligence · Aug 21, 2026
- Hackers Target Zimbra Servers in Active Exploitation CampaignSecurityWeek · Aug 20, 2026
- Attackers Exploit Zimbra SNMP Flaw for Unauthenticated Remote Code ExecutionThe Hacker News · Aug 20, 2026
- Critical Zimbra RCE Vulnerability Actively Exploited in the WildCyber Security News · Aug 20, 2026
- CISA Adds One Known Exploited Vulnerability to CatalogCISA Alerts