Vulnerabilities > Flexense > Syncbreeze > High

DATE CVE VULNERABILITY TITLE RISK
2018-03-12 CVE-2018-8065 Improper Input Validation vulnerability in Flexense Syncbreeze 10.6.24
An issue was discovered in the web server in Flexense SyncBreeze Enterprise 10.6.24.
network
low complexity
flexense CWE-20
7.5
2018-02-06 CVE-2017-17996 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Flexense Syncbreeze
A buffer overflow vulnerability in "Add command" functionality exists in Flexense SyncBreeze Enterprise <= 10.3.14.
network
low complexity
flexense CWE-119
8.8
2018-01-10 CVE-2017-15664 Improperly Implemented Security Check for Standard vulnerability in Flexense Syncbreeze 10.1.16
In Flexense Sync Breeze Enterprise v10.1.16, the Control Protocol suffers from a denial of service vulnerability.
network
low complexity
flexense CWE-358
7.5
2017-12-19 CVE-2017-17088 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Flexense Syncbreeze
The Enterprise version of SyncBreeze 10.2.12 and earlier is affected by a Remote Denial of Service vulnerability.
network
low complexity
flexense CWE-119
7.5
2017-12-03 CVE-2017-17099 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Flexense Syncbreeze 10.1.16
There exists an unauthenticated SEH based Buffer Overflow vulnerability in the HTTP server of Flexense SyncBreeze Enterprise v10.1.16.
local
low complexity
flexense CWE-119
7.8
2017-10-31 CVE-2017-15950 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Flexense Syncbreeze 10.1.16
Flexense SyncBreeze Enterprise version 10.1.16 is vulnerable to a buffer overflow that can be exploited for arbitrary code execution.
local
low complexity
flexense CWE-119
7.8
2017-03-29 CVE-2017-7310 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Flexense Diskboss, Disksorter and Syncbreeze
A buffer overflow vulnerability in Import Command in SyncBreeze before 10.6, DiskSorter before 10.6, DiskBoss before 8.9, DiskPulse before 10.6, DiskSavvy before 10.6, DupScout before 10.6, and VX Search before 10.6 allows attackers to execute arbitrary code via a crafted XML file containing a long name attribute of a classify element.
local
low complexity
flexense CWE-119
7.8