Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Workaround
Harden the Storage Zones Controller access using IIS or use a firewall to block network access to the Storage Zones Controller administration pages from untrusted sources.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 21 Apr 2026 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:progress:sharefile_storage_zones_controller:*:*:*:*:*:*:*:* |
Thu, 02 Apr 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Progress
Progress sharefile Storage Zones Controller |
|
| Vendors & Products |
Progress
Progress sharefile Storage Zones Controller |
Thu, 02 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 02 Apr 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Thu, 02 Apr 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Customer Managed ShareFile Storage Zones Controller (SZC) allows an unauthenticated attacker to access restricted configuration pages. This leads to changing system configuration and potential remote code execution. | |
| Title | EAR vulnerability in Progress ShareFile Storage Zones Controller (SZC) | |
| Weaknesses | CWE-284 CWE-698 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ProgressSoftware
Published:
Updated: 2026-04-08T15:25:21.185Z
Reserved: 2026-02-18T16:18:30.153Z
Link: CVE-2026-2699
Updated: 2026-04-02T13:47:48.973Z
Status : Analyzed
Published: 2026-04-02T14:16:27.697
Modified: 2026-04-21T00:26:13.133
Link: CVE-2026-2699
No data.
OpenCVE Enrichment
Updated: 2026-05-14T15:15:23Z