An authenticated file upload vulnerability allows attackers to upload and execute malicious files, leading to remote code execution on the server.
Progress CVEs
5 high and critical vulnerabilities covered by CVE Brief since 2025-10-29, each with independent analyst commentary.
← All vendors RSS feed Watch this vendorProfile
Last 12 months
5 CVEs in the last 12 months
Products
- ShareFile Storage Zones Controller3
- MOVEit Transfer2
2 products in total
Every figure counts the high and critical CVEs CVE Brief has published for this vendor, not every CVE the vendor has ever received. Exploitation means listing in the CISA Known Exploited Vulnerabilities catalog. No patch-availability figure is shown because CVE Brief does not measure it.
Citrix ShareFile Storage Zones Controller (SZC) contains a flaw allowing unauthenticated attackers to access restricted configuration pages, leading t...
In Progress ShareFile Storage Zones Controller v5
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Progress MOVEit Transfer (Ad Hoc module)
Uncontrolled Resource Consumption vulnerability in Progress MOVEit Transfer (AS2 module)