CVE-2026-33612
Received
Received - Intake
Authoritative DNS Server Zone Cache Poisoning via ZoneToCache
Publication date: 2026-06-25
Last updated on: 2026-06-25
Assigner: Open-Xchange
Description
Description
A malicious authoritative server can send a crafted zone via the ZoneToCache function that leads to cache poisoning.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
Currently, no data is known.
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-349 | The product, when processing trusted data, accepts any untrusted data that is also included with the trusted data, treating the untrusted data as if it were trusted. |