Bishop Fox · @BishopFox
908 followers · 273 posts · Server infosec.exchange

“Zimbra Collaboration Suite Network Edition includes functionality that allows customers to receive a ZIP archive and extract its contents to an arbitrary location on the host due to the path traversal . This could be leveraged by to achieve on the target system. Note that the open-source edition is not affected. While the path traversal vulnerability was first published last year, it has gained more traction, especially since working have been published lately to achieve remote code execution.”

Read more in our write-up: bfx.social/3lUL75U

#vulnerability #hackers #remotecodeexecution #exploits #whatthevuln #rce

Last updated 2 years ago

Bishop Fox · @BishopFox
890 followers · 231 posts · Server infosec.exchange

If you caught today's episode featuring Carlos Yanez discussing Zimbra , be sure to check out his write-up on the topic, too! bfx.social/3lUL75U

Next month we're back with Lindsay Von Tish and Allan Cecil to talk about bypassing with .

#whatthevuln #security #edr #lolbins

Last updated 2 years ago

Bishop Fox · @BishopFox
886 followers · 222 posts · Server infosec.exchange

In the inaugural episode of our series, Carlos Yanez zeros in on CVE-2022-37042 and -2022-27925, exploring the perils of on web-based communications technology.

Watch along on our livestream on February 21st! bfx.social/3jjgFkK

#whatthevuln #cve #rce

Last updated 2 years ago

Bishop Fox · @BishopFox
886 followers · 222 posts · Server infosec.exchange

In the inaugural episode of our series, Carlos Yanez zeros in on CVE-2022-37042 and -2022-27925, exploring the perils of on web-based communications technology. Watch along on our livestream on February 21st! bfx.social/3XQ2UsQ  

#whatthevuln #cve #rce

Last updated 2 years ago