← All stories
● Covered by 3 sources · 5 reportsMedium impact

Progress Software Confirms Zero-Day Vulnerability in ShareFile Storage Zone Controllers

🔄 Updated 79d ago — new reporting from SecurityWeek
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • Progress found a zero-day flaw in ShareFile Storage Zone Controllers.
  • Affected are versions 5.x and 6.x due to path traversal vulnerability.
  • Users advised to shut down and install available patches.
  • Progress suspended service access during investigation.
  • No unauthorized data access has been reported so far.

Overview

Progress Software instructed ShareFile users to shut down Storage Zone Controllers following the discovery of a zero-day vulnerability. This guidance was issued due to a credible external threat, leading to the temporary suspension of service access for affected accounts.

Vulnerability Details

The discovered flaw is a high-severity path traversal vulnerability affecting all 5.x and 6.x versions of ShareFile Storage Zone Controllers. It allows authenticated administrative users to access files and modify directory content, posing a significant security risk.

Response and Resolution

Following the detection, Progress released patched versions 5.12.5 and 6.0.2 to address the vulnerability. Users were advised to shut down servers as a precaution and then apply the patches to restore operational status.

Security Assurance

While tackling this issue, Progress confirmed no evidence of unauthorized access to customer data. The company is working with cybersecurity experts to ensure vulnerabilities are comprehensively resolved.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~34 min · 27 stories · Oct 02

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

How outlets covered it

Progress Software confirmed a zero-day vulnerability disrupted ShareFile Storage Zones Controllers, prompting service access suspension. With the release of patched versions, the company claims there is no evidence of customer data compromise.

Progress Software confirmed a zero-day vulnerability caused the shutdown of ShareFile Storage Zone Controllers. Security updates have been released to address a high-severity path traversal vulnerability affecting all 5.x and 6.x versions, which could allow unauthorized file access.

Progress Software has instructed ShareFile customers to shut down their Storage Zone Controller servers due to a credible external security threat. The shutdown is a precautionary measure while the company investigates potential vulnerabilities that could lead to serious breaches.

Progress Software is advising ShareFile customers to shut down Storage Zone Controllers due to a credible external security threat. This action temporarily disables access to affected accounts while the company investigates, as it has not disclosed details about the threat.

Progress Software has warned ShareFile users to shut down Storage Zone Controllers due to a credible external security threat targeting the service. Access to ShareFile accounts using these Storage Zone Controllers has been temporarily disabled as a precautionary measure while the situation is investigated.