CVE-2026-84462
8.6Zammad · Zammad
A security filter bypass in Zammad's AI Agent configuration allows authenticated administrators to execute arbitrary commands on the host server.
Executive summary
A critical vulnerability in Zammad versions prior to 7.1.2 allows an authenticated administrator to achieve remote code execution on the underlying server.
Vulnerability
This flaw involves improper input validation and code injection within the AI Agent configuration fields. By injecting specially crafted text, an administrator with existing privileges can bypass security filters to execute arbitrary commands on the hosting server.
Business impact
Successful exploitation grants an attacker full control over the Zammad server, leading to a complete compromise of confidentiality, integrity, and availability. Given the CVSS score of 8.6, this vulnerability poses a high risk, as it allows for the unauthorized access, modification, or destruction of all data stored within the helpdesk system.
Remediation
Immediate Action: Update the Zammad installation to version 7.1.2 or later immediately to apply the necessary security patches.
Proactive Monitoring: Review application logs for unusual activity related to AI Agent configuration changes and monitor server-level process logs for unexpected command execution.
Compensating Controls: Restrict administrative access to the AI Agent configuration module to the minimum number of personnel required and implement strict network segmentation to limit the impact of potential lateral movement.
Exploitation status
Public Exploit Available: No — there is no confirmed public exploit or proof-of-concept available in the provided data.
Analyst recommendation
The severity of this vulnerability necessitates an immediate upgrade to version 7.1.2. Because this flaw enables full server compromise through the AI Agent interface, organizations should treat this as a high-priority patch to prevent potential data breaches and system-wide service disruption.
More Zammad CVEs
History
- Disclosed CVE record published
- Collected by CVE Brief via github
- Analyst report written
- Published in the daily brief high section