ZeroHour

CVE-2026-15724

CVSS 3.1
8.7 high
EPSS
<1%p43
Published
()
Modified
Description

In Progress ShareFile Storage Zones Controller versions prior to 5.12.5 and 6.0.2, an authenticated administrative user can exploit a path traversal vulnerability to read arbitrary files from the server filesystem, write files to arbitrary directories, or determine whether specific files exist on the server.

Vendors
progress
Products
sharefile storage zones controller
Weakness
CWE-20, CWE-22, CWE-73
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.