Vulnerabilities > Flexense > Syncbreeze > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-05-02 CVE-2018-10563 Cross-site Scripting vulnerability in Flexense Syncbreeze
An XSS in Flexense SyncBreeze affects all versions (tested from SyncBreeze Enterprise from v10.1 to v10.7).
network
flexense CWE-79
4.3
2018-01-10 CVE-2017-15664 Improperly Implemented Security Check for Standard vulnerability in Flexense Syncbreeze 10.1.16
In Flexense Sync Breeze Enterprise v10.1.16, the Control Protocol suffers from a denial of service vulnerability.
network
low complexity
flexense CWE-358
5.0
2017-12-19 CVE-2017-17088 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Flexense Syncbreeze
The Enterprise version of SyncBreeze 10.2.12 and earlier is affected by a Remote Denial of Service vulnerability.
network
low complexity
flexense CWE-119
5.0
2017-10-31 CVE-2017-15950 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Flexense Syncbreeze 10.1.16
Flexense SyncBreeze Enterprise version 10.1.16 is vulnerable to a buffer overflow that can be exploited for arbitrary code execution.
network
flexense CWE-119
6.8
2017-03-29 CVE-2017-7310 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Flexense Diskboss, Disksorter and Syncbreeze
A buffer overflow vulnerability in Import Command in SyncBreeze before 10.6, DiskSorter before 10.6, DiskBoss before 8.9, DiskPulse before 10.6, DiskSavvy before 10.6, DupScout before 10.6, and VX Search before 10.6 allows attackers to execute arbitrary code via a crafted XML file containing a long name attribute of a classify element.
network
flexense CWE-119
6.8