CVE-2017-15950
Flexense SyncBreeze Enterprise version 10.1.16 is vulnerable to a buffer overflow that can be exploited for arbitrary code execution. The flaw is triggered by providing a long input into the "Destination directory" field, either within an XML document or through use of passive mode.
- Affected products
- Syncbreeze Enterprise
- Flexense Syncbreeze
- = 10.1.16
- Fix
- Available
- CVSS 3.0
- 7.8 HIGH
- EPSS
- 5.5% (92th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2017-10-31
CVE-2017-15950 at NVD
6 known exploits for CVE-2017-15950
Proof-of-concept code and exploit modules indexed by Sploitus