PT-2024-6328 · Zimbra · Zimbra Collaboration
Published
2024-09-04
·
Updated
2025-07-30
·
CVE-2024-45519
10
Critical
Base vector | Vector | AC:L/AV:N/A:H/C:H/I:H/PR:N/S:C/UI:N |
Name of the Vulnerable Software and Affected Versions:
Zimbra Collaboration versions prior to 8.8.15 Patch 46
Zimbra Collaboration versions 9 prior to 9.0.0 Patch 41
Zimbra Collaboration versions 10 prior to 10.0.9
Zimbra Collaboration versions 10.1 prior to 10.1.1
Description:
The postjournal service in Zimbra Collaboration sometimes allows unauthenticated users to execute commands. This issue is actively being exploited in the wild, with threat actors sending spam emails loaded with code that aims to exploit the flaw. The vulnerability allows attackers to execute arbitrary commands on affected installations, potentially leading to unauthorized access and code execution. Over 19,000 public Zimbra installations are vulnerable to code execution attacks.
Recommendations:
For Zimbra Collaboration versions prior to 8.8.15 Patch 46, update to version 8.8.15 Patch 46 or later.
For Zimbra Collaboration versions 9 prior to 9.0.0 Patch 41, update to version 9.0.0 Patch 41 or later.
For Zimbra Collaboration versions 10 prior to 10.0.9, update to version 10.0.9 or later.
For Zimbra Collaboration versions 10.1 prior to 10.1.1, update to version 10.1.1 or later.
As a temporary workaround, consider disabling the postjournal service until a patch is available.
Exploit
Fix
OS Command Injection
Weakness Enumeration
Related Identifiers
Affected Products
References · 200
- 🔥 https://github.com/Chocapikk/CVE-2024-45519⭐ 121 🔗 21 · Exploit
- 🔥 https://github.com/p33d/CVE-2024-45519⭐ 42 🔗 20 · Exploit
- 🔥 https://github.com/XiaomingX/cve-2024-45519-poc⭐ 4 · Exploit
- 🔥 https://github.com/cleverg0d/CVE-2024-45519 🔗 1 · Exploit
- 🔥 https://blog.projectdiscovery.io/zimbra-remote-code-execution · Exploit
- https://osv.dev/vulnerability/CVE-2024-45519 · Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2024-45519 · Security Note
- https://safe-surf.ru/specialists/bulletins-nkcki/711488 · Security Note
- https://bdu.fstec.ru/vul/2024-07279 · Security Note
- https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories · Security Note
- https://t.me/defcon_news/125807 · Telegram Post
- https://wiki.zimbra.com/wiki/Zimbra_Responsible_Disclosure_Policy · Note
- https://wiki.zimbra.com/wiki/Zimbra_Releases/9.0.0/P41#Security_Fixes · Note
- https://t.me/cyberok_news/74 · Telegram Post
- https://twitter.com/ohhara_shiojiri/status/1842122125270036644 · Twitter Post