CVE detail
CVE-2026-2699
Customer Managed ShareFile Storage Zones Controller (SZC) allows an unauthenticated attacker to access restricted configuration pages. This leads to changing system configuration and potential remote code execution.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 19.5 · diversity 20.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
6 source links · newest first
but users speculate that threat actors might be targeting two vulnerabilities addressed in March. The flaws, tracked as CVE-2026-2699 (CVSS score of 9.8) and CVE-2026-2701 (CVSS score of 9.1), could be chained together to make configuration changes and upload malicious files to achieve remote code execution (RCE) without authentication. Responding to
newswww.securityweek.comJul 13, 2026, 8:20 AM- 6th April – Threat Intelligence ReportCheck Point Research
For the latest discoveries in cyber research for the week of 30th March, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES The European Commission, the European Union’s executive body, has confirmed a data breach after its Europa.eu platform was compromised through a third-party exchange linked to the Trivy supply chain attack. The incident […]
vendorresearch.checkpoint.comApr 6, 2026, 11:21 AM The vulnerabilities can be chained together to bypass authentication and upload arbitrary files to the server.
newswww.securityweek.comApr 3, 2026, 12:12 PMNo excerpt available.
Exploitgithub.comApr 2, 2026, 2:16 PM- https://docs.sharefile.com/en-us/storage-zones-controller/5-0/security-vulnerability-feb26docs.sharefile.com
No excerpt available.
Vendor Advisorydocs.sharefile.comApr 2, 2026, 2:16 PM - You’re Not Supposed To ShareFile With Everyone (Progress ShareFile Pre-Auth RCE Chain CVE-2026-2699 & CVE-2026-2701)watchTowr Labs
If you squint and look at the CISA KEV list, you might think it's made up exclusively of vulnerabilities in file transfer solutions. While this would be wrong (and you shouldn’t squint, it’s bad for your eyes), file transfer solutions do play a decent
exploitlabs.watchtowr.comApr 2, 2026, 10:00 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-67287CVSS 6.3 · Medium
Joomla Extension - joomshaper.com - Unauthenticated comment creation in SP Page Builder < 6.8.0 - An unauthenticated attacker can create comments on instances with disabled guest…
- CVE-2026-67284CVSS 5.3 · Medium
Joomla Extension - tabaoca.org - Improper ACL implementation allows file operations in Cotton Cloud < 2.0.3 - Authenticated users could perform various file-related operations (re…
- CVE-2026-67283CVSS 6.9 · Medium
Joomla Extension - tabaoca.org - Improper ACL implementation allows file operations in Cotton Cloud < 2.0.2 - Unauthenticated users could perform various file-related operations (…
- CVE-2026-73212CVSS 5.8 · Medium
Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.13.1, good_peer_addr() in src/server/ns_turn_server.c uses ioa_addr_in_range() in src/client/ns_tur…
- CVE-2026-66804CVSS 7.8 · High
Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally.
- CVE-2026-65773CVSS 7.8 · High
Improper access control in Windows Kernel allows an authorized attacker to elevate privileges locally.