zimbra-zero-day-exploited-to-target-brazilian-military-via-malicious-ics-files

“`html
A recently addressed security flaw in Zimbra Collaboration was utilized as a zero-day earlier this year in cyber assaults aimed at the Brazilian military.
Identified as CVE-2025-27915 (CVSS score: 5.4), the flaw is a stored cross-site scripting (XSS) issue in the Classic Web Client that emerges due to inadequate cleaning of HTML content in ICS calendar files,
“`


Leave a Reply

Your email address will not be published. Required fields are marked *

Share This