Security

Unauthenticated command injection on internet-facing mail servers: tracking CVE-2026-73570

Microsoft Threat Intelligence examines exploitation of CVE-2026-73570, an unauthenticated command-injection flaw in Zimbra. The analysis covers observed attack paths, detection opportunities, and mitigation guidance.

Image: Microsoft Security Blog

Coverage 1 publisher

  1. Microsoft Security Blog

    Unauthenticated command injection on internet-facing mail servers: tracking CVE-2026-73570

Articles stay on their publishers’ sites; each link opens the original.