#ZimbraServer
Over 10,500 Zimbra servers remain vulnerable to CVE-2025-48700, an XSS flaw exploited by APT28 and APT29 in targeted phishing and mass intrusions. CISA lists it in KEV for federal patching. #ZimbraServer #CrossSiteScripting #USA
Over 10,000 Zimbra servers vulnerable to ongoing XSS attacks
Over 10,000 Zimbra Collaboration Suite instances remain exposed and vulnerable to active exploitation of a cross-site scripting flaw tracked as CVE-2025-48700, Shadowserver warns. CISA has added the vulnerability to its KEV catalog and ordered federal agencies to patch while past XSS exploits by APT28 and APT29 show the issue is being abused in targeted phishing and mass intrusions. #Zimbra #CVE-2025-48700 #Shadowserver #CISA #APT28 #APT29
www.hendryadrian.com
April 24, 2026 at 4:00 PM