CVE-2023-24489: Citrix Content Collaboration ShareFile Improper Access Control Vulnerability
Critical severity, CVSS 9.8. Actively exploited: in CISA KEV since 2023-08-16. EPSS: 97.3% chance of exploitation in the next 30 days.
A vulnerability has been discovered in the customer-managed ShareFile storage zones controller which, if exploited, could allow an unauthenticated attacker to remotely compromise the customer-managed ShareFile storage zones controller.
Affected products
- Citrix ShareFile Storage Zones Controller: before 5.11.24 (fixed in 5.11.24)
Published 2023-07-10. Last modified 2026-06-17.