Progress ShareFile Storage Zone Controller access disruption
Service Disruption
Summary
Hide ▲
Show ▼
ShareFile Storage Zone Controller customers lost access when Progress Software temporarily disabled affected accounts and marked them not operational while investigating a credible external security threat. The disruption affects the Windows servers that run the controllers, not standard cloud-only ShareFile accounts. Customers were told to keep the controllers offline, so the service remains constrained until the threat is understood.
Related Happenings
Progress Software ShareFile Storage Zone Controller path traversal patch release
Security Patch Release
H score38
First: 14.07.2026 19:08
Last: 14.07.2026 19:08
Sources 1
How related:
The company has released versions 5.12.5 and 6.0.2 of the ShareFile Storage Zone Controller and urges all customers to install the security updates as soon as possible.
About this happening:
Progress Software released 5.12.5 and 6.0.2 for ShareFile Storage Zone Controller after a high-severity zero-day path traversal vulnerability forced last week’s sh...
Progress Software ShareFile Storage Zone Controller path traversal patch release
Security Patch ReleaseHow related: The company has released versions 5.12.5 and 6.0.2 of the ShareFile Storage Zone Controller and urges all customers to install the security updates as soon as possible.
About this happening: Progress Software released 5.12.5 and 6.0.2 for ShareFile Storage Zone Controller after a high-severity zero-day path traversal vulnerability forced last week’s sh...
ShareFile Storage Zone Controller path traversal zero-day path traversal flaw
Vulnerability
H score1
First: 14.07.2026 19:08
Last: 14.07.2026 19:08
Sources 1
How related:
In an update sent to customers today, Progress says its investigation identified a high-severity path traversal vulnerability affecting all 5.x and 6.x versions of ShareFile Storage Zone Controller.
About this happening:
Progress confirmed a high-severity path traversal zero-day in ShareFile Storage Zone Controller, exposing all 5.x and 6.x versions to arbitrary file read and write ris...
ShareFile Storage Zone Controller path traversal zero-day path traversal flaw
VulnerabilityHow related: In an update sent to customers today, Progress says its investigation identified a high-severity path traversal vulnerability affecting all 5.x and 6.x versions of ShareFile Storage Zone Controller.
About this happening: Progress confirmed a high-severity path traversal zero-day in ShareFile Storage Zone Controller, exposing all 5.x and 6.x versions to arbitrary file read and write ris...
Progress ShareFile access disruption during security threat investigation
Service Disruption
H score1
First: 13.07.2026 15:05
Last: 13.07.2026 15:05
Sources 1
About this happening:
Progress ShareFile experienced a customer-access disruption after Progress Software identified a credible external security threat targeting Storage Zone Controllers...
Progress ShareFile access disruption during security threat investigation
Service DisruptionAbout this happening: Progress ShareFile experienced a customer-access disruption after Progress Software identified a credible external security threat targeting Storage Zone Controllers...
Progress ShareFile Storage Zone Controllers shutdown guidance
Advisory/Mitigation
H score44
First: 10.07.2026 19:26
Last: 10.07.2026 19:26
Sources 1
How related:
Progress Software has told ShareFile customers to shut down the Windows servers running their Storage Zone Controllers, confirming to The Hacker News that it is responding to a "credible external security threat."
About this happening:
Progress Software has told ShareFile customers using Storage Zone Controllers to shut down their servers immediately after detecting a credible external security...
Progress ShareFile Storage Zone Controllers shutdown guidance
Advisory/MitigationHow related: Progress Software has told ShareFile customers to shut down the Windows servers running their Storage Zone Controllers, confirming to The Hacker News that it is responding to a "credible external security threat."
About this happening: Progress Software has told ShareFile customers using Storage Zone Controllers to shut down their servers immediately after detecting a credible external security...
Latest development: 14.07.2026 19:08
Progress Software identified a high-severity path traversal vulnerability affecting all 5.x and 6.x versions of ShareFile Storage Zone Controller, reserved a CVE identifier for it, and released versions 5.12.5 and 6.0.2 to patch the flaw and restore the controllers after updating. The company said it has no indication of unauthorized access to any ShareFile customer account or data and no active threat has been identified.
CISA sets June 28 patch deadline for Cisco Unified Communications Manager Server
Public Sector Action
H score35
First: 26.06.2026 22:43
Last: 26.06.2026 22:43
Sources 1
About this happening:
CISA ordered federal agencies to patch CVE-2026-20230 in Cisco Unified Communications Manager Server by June 28, tightening exposure around an actively exploited...
CISA sets June 28 patch deadline for Cisco Unified Communications Manager Server
Public Sector ActionAbout this happening: CISA ordered federal agencies to patch CVE-2026-20230 in Cisco Unified Communications Manager Server by June 28, tightening exposure around an actively exploited...
Timeline
-
14.07.2026 19:08 1 articles · 10d ago
Progress confirms ShareFile Storage Zone Controller zero-day path traversal flaw and releases patches
Technical Analysis UpdateProgress confirmed a high-severity zero-day path traversal vulnerability affecting all 5.x and 6.x versions of ShareFile Storage Zone Controller and released versions 5.12.5 and 6.0.2 to patch the flaw. Progress said the update follows the emergency shutdown of affected controllers and that it has no indication of unauthorized access to any ShareFile customer account or data.
Show sources
- Progress confirms ShareFile zero-day flaw behind Storage Zone shutdown — www.bleepingcomputer.com — 14.07.2026 19:08
-
10.07.2026 19:30 2 articles · 13d ago
Progress tells ShareFile customers to shut down Storage Zone Controllers
Victim Impact UpdateProgress Software told ShareFile customers to shut down the Windows servers running their Storage Zone Controllers and temporarily disabled access to affected accounts while it works with internal and external security experts after learning of a credible external security threat.
Show sources
- URGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security Threat — thehackernews.com — 10.07.2026 19:30
- URGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security Threat — thehackernews.com — 10.07.2026 19:30
-
10.07.2026 19:12 1 articles · 14d ago
Progress status page marks Storage Zone Controller customers as not operational
Initial DisclosureProgress confirmed on its status page that Storage Zone Controller customers were not operational and that the incident was under investigation after a customer posted the company's email to Reddit's r/sysadmin.
Show sources
- URGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security Threat — thehackernews.com — 10.07.2026 19:30