Critical severity9.8CISA KEVNVD Advisory· Published Jul 10, 2023· Updated Jun 17, 2026
CVE-2023-24489
CVE-2023-24489
Description
A vulnerability has been discovered in the customer-managed ShareFile storage zones controller which, if exploited, could allow an unauthenticated attacker to remotely compromise the customer-managed ShareFile storage zones controller.
Affected products
3cpe:2.3:a:citrix:sharefile_storage_zones_controller:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:citrix:sharefile_storage_zones_controller:*:*:*:*:*:*:*:*range: <5.11.24
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
2- support.citrix.com/article/CTX559517/sharefile-storagezones-controller-security-update-for-cve202324489nvdBroken LinkVendor Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
1- URGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security ThreatThe Hacker News · Jul 10, 2026