Back Cisecurity Multiple Vulnerabilities in Progress ShareFile Could Allow for Remote Code Execution
Multiple vulnerabilities have been discovered in Progress ShareFile, which when chained together, could allow for remote code execution. Progress ShareFile is a secure, cloud-based content collaboration and file-sharing platform. It enables businesses to securely exchange documents, manage client workflows, and obtain electronic signatures, with a focus on compliance for industries like finance and healthcare. Successful exploitation of the vulnerabilities when chained together could allow attackers to abuse the file upload and extraction functionality to place malicious ASPX webshells in the application’s webroot.
watchTowr released PoC code and a demo publicly for CVE-2026-2699 and CVE-2026-2701
Multiple vulnerabilities have been discovered in Progress ShareFile, which when chained together, could allow for remote code execution. Details of the vulnerabilities are as follows:
Tactic : Initial Access ( TA0001 ):
Technique : Exploit Public-Facing Application ( T1190 ):
Successful exploitation of the vulnerabilities when chained together could allow attackers to abuse the file upload and extraction functionality to place malicious ASPX webshells in the application’s webroot.
We recommend the following actions be taken:
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
