About:
CVE-2026-73570 is a high-severity OS command injection vulnerability affecting the SNMP monitoring component of Zimbra Collaboration Suite when the optional zimbra-snmp package is installed and SNMP notifications are enabled.
The vulnerability results from improper sanitization of untrusted input during SNMP notification processing. An unauthenticated remote attacker can exploit the flaw without credentials or user interaction to execute arbitrary operating system commands with the privileges of the Zimbra user.
Successful exploitation may allow an attacker to compromise the affected Zimbra environment and establish persistence. CVE-2026-73570 is confirmed to be actively exploited in the wild.
RedLegg will occasionally communicate vulnerabilities released outside the usual release schedule to provide additional value to our customers. These emergency bulletins describe vulnerabilities or threats we classify as the highest severity level and warrant out-of-band emergency patching or mitigation action.
Identifier: CVE-2026-73570
PoC or Exploitation: Confirmed actively exploited in the wild.
CVSS Score: 8.9 (High, CVSS v3.1)
Update / Patch:
Description:
Mitigation Recommendation: