CVE Tools

Security threat prompts Progress to disable ShareFile accounts, tell customers to shut down servers

Help Net SecurityBy Zeljka Zorz

AdvisoryShareFileStorage Zone Controller

Our summary

Progress Software has issued an urgent warning about a 'credible external security threat' affecting its ShareFile Storage Zone Controllers (SZC), prompting the company to disable access to affected accounts and urge customers to manually shut down their on-premises SZC servers. The move follows reports that attackers might be exploiting two vulnerabilities—CVE-2026-2699 and CVE-2026-2701—to gain remote code execution on unpatched systems. While no unauthorized access has been confirmed, Progress is collaborating with cybersecurity experts to investigate the incident and restore services.

Read at Help Net Security

Help Net Security publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store