CVE-2017-17088
The Enterprise version of SyncBreeze 10.2.12 and earlier is affected by a Remote Denial of Service vulnerability. The web server does not check bounds when reading server requests in the Host header on making a connection, resulting in a classic Buffer Overflow that causes a Denial of Service.
- Affected products
- Syncbreeze
- Flexense Syncbreeze
- ≤ 10.2.12
- Fix
- Available
- CVSS 3.0
- 7.5 HIGH
- EPSS
- 7.0% (94th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2017-12-19
CVE-2017-17088 at NVD
4 known exploits for CVE-2017-17088
Proof-of-concept code and exploit modules indexed by Sploitus