DEV Community

Cover image for Progress Software Patches Critical RCE Chain in ShareFile Storage Zones Controller
BeyondMachines for BeyondMachines

Posted on • Originally published at beyondmachines.net

Progress Software Patches Critical RCE Chain in ShareFile Storage Zones Controller

Summary

Progress Software patched two critical vulnerabilities (CVE-2026-2699 and CVE-2026-2701) in ShareFile Storage Zones Controller that allow unauthenticated attackers to bypass authentication and execute remote code.

Take Action:

If you manage your own ShareFile storage zones, update to version 5.12.4 or move to version 6 to prevent full system takeover. File transfer tools are high-value targets for ransomware groups, so treat this patch as a top priority. If you can't patch, isolate the instances until they are patched. General isolation doesn't work since these systems are designed to be accessible from the public internet.


Read the full article on BeyondMachines


This article was originally published on BeyondMachines

Top comments (0)