All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2026-16138
HIGHpublished 2026-08-17 14:20 UTC · 19 hours ago · modified 2026-08-18 04:16 UTC
8.0
CVSS / 10
// description
In Progress ShareFile Storage Zones Controller v5.12.5 and below versions, unsafe deserialization of untrusted file metadata can allow a user with write access to a Network share to execute arbitrary code on the Storage Zones Controller host.
// weaknesses (CWE)
- CWE-502