Skip to main content

Vendor archive

flexense CVEs

Beta · best-effort

53 CVEs tagged to vendor flexense8 Critical, 33 High, 12 Medium, 0 Low, 0 Unrated.

CVE-2020-29659

Published Dec 9, 2020

A buffer overflow in the web server of Flexense DupScout Enterprise 10.0.18 allows a remote anonymous attacker to execute code as SYSTEM by overflowing the sid parameter via a GET…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-10563

Published May 2, 2018

An XSS in Flexense SyncBreeze affects all versions (tested from SyncBreeze Enterprise from v10.1 to v10.7).

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-8065

Published Mar 12, 2018

An issue was discovered in the web server in Flexense SyncBreeze Enterprise 10.6.24. There is a user mode write access violation on the syncbrs.exe memory region that can be trigg…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-6481

Published Feb 27, 2018

A buffer overflow vulnerability in the control protocol of Disk Savvy Enterprise v10.4.18 allows remote attackers to execute arbitrary code by sending a crafted packet to TCP port…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-17996

Published Feb 6, 2018

A buffer overflow vulnerability in "Add command" functionality exists in Flexense SyncBreeze Enterprise <= 10.3.14. The vulnerability can be triggered by an authenticated attacker…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-5261

Published Feb 2, 2018

An issue was discovered in Flexense DiskBoss 8.8.16 and earlier. Due to the usage of plaintext information from the handshake as input for the encryption key used for the encrypti…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2018-6537

Published Feb 2, 2018

A buffer overflow vulnerability in the control protocol of Flexense SyncBreeze Enterprise v10.4.18 allows remote attackers to execute arbitrary code by sending a crafted packet to…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-5359

Published Jan 23, 2018

The server in Flexense SysGauge 3.6.18 operating on port 9221 can be exploited remotely with the attacker gaining system-level access because of a Buffer Overflow.

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2018-5262

Published Jan 12, 2018

A stack-based buffer overflow in Flexense DiskBoss 8.8.16 and earlier allows unauthenticated remote attackers to execute arbitrary code in the context of a highly privileged accou…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-15665

Published Jan 10, 2018

In Flexense DiskBoss Enterprise 8.5.12, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to control…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-15664

Published Jan 10, 2018

In Flexense Sync Breeze Enterprise v10.1.16, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to con…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-15663

Published Jan 10, 2018

In Flexense Disk Pulse Enterprise v10.1.18, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to cont…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-15662

Published Jan 10, 2018

In Flexense VX Search Enterprise v10.1.12, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to contr…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-15667

Published Dec 28, 2017

In Flexense SysGauge Server 3.6.18, the Control Protocol suffers from a denial of service. The attack vector is a crafted SERVER_GET_INFO packet sent to control port 9221.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-17088

Published Dec 19, 2017

The Enterprise version of SyncBreeze 10.2.12 and earlier is affected by a Remote Denial of Service vulnerability. The web server does not check bounds when reading server requests…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-17099

Published Dec 3, 2017

There exists an unauthenticated SEH based Buffer Overflow vulnerability in the HTTP server of Flexense SyncBreeze Enterprise v10.1.16. When sending a GET request with an excessive…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-15950

Published Oct 31, 2017

Flexense SyncBreeze Enterprise version 10.1.16 is vulnerable to a buffer overflow that can be exploited for arbitrary code execution. The flaw is triggered by providing a long inp…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-15220

Published Oct 11, 2017

Flexense VX Search Enterprise 10.1.12 is vulnerable to a buffer overflow via an empty POST request to a long URI beginning with a /../ substring. This allows remote attackers to e…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 26-50 of 53 CVEsPage 2 of 3