Orizon[verified]@OrizonCyberPatch
A critical command injection vulnerability (CVE-2025-71275) in Zimbra Collaboration Suite is confirmed, with a patch now available.
dbugs[verified]@ptdbugsDisclosure
The advisory announces a critical unauthenticated remote code execution flaw in Zimbra Collaboration Suite’s PostJournal service, providing detailed technical information and a PoC reference but no patch or evidence of active exploitation.
The Hacker Wire@TheHackerWireDisclosure
A command injection vulnerability (CVE-2025-71275) affecting Zimbra Collaboration Suite 8.8.15 has been disclosed, detailing unauthenticated execution of arbitrary system commands, but no PoC, exploit, patch, or active exploitation information is provided.
CVE@CVEnewDisclosure
The text announces that CVE‑2025‑71275 is a command injection flaw in Zimbra Collaboration Suite’s PostJournal service, permitting unauthenticated arbitrary command execution, but provides no PoC, exploit, active use, or patch information.
CVEFind.com@CveFindComPatch
The tweet warns about a critical remote command execution vulnerability in Zimbra and urges users to apply the available patch immediately.
0day Signal@0dayPublishingDisclosure
The post announces CVE-2025-71275, a shell‑expansion flaw in Zimbra 8.8.15 that permits unauthenticated, instant RCE via SMTP RCPT TO parameters, and links to a vulnerability summary.