vulnerability

Zimbra Collaboration: CVE-2023-26562: Collaboration: Missing Authorization

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:P/I:N/A:N)
Published
Feb 13, 2024
Added
Jan 10, 2025
Modified
Feb 6, 2026

Description

Previously, the account status was not validated when sending emails using 2FA. Added additional validations for user accounts to check the account status and allow email operations.

Solution

zimbra-collaboration-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.