vendor:
Sync Breeze Enterprise
by:
Daniel Teixeira
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Sync Breeze Enterprise
Affected Version From: 10.4.18
Affected Version To: 10.4.18
Patch Exists: YES
Related CWE:
CPE: a:sync_breeze:enterprise:10.4.18
Platforms Tested: Windows 7 x86
2018
Sync Breeze Enterprise v10.4.18 Server – Unauthenticated Remote Buffer Overflow SEH
This exploit targets Sync Breeze Enterprise v10.4.18 Server and allows for an unauthenticated remote buffer overflow. By sending a specially crafted packet to the server, an attacker can trigger a buffer overflow condition, potentially leading to remote code execution.
Mitigation:
The vendor has released a patch for this vulnerability. It is recommended to update to the latest version of Sync Breeze Enterprise to mitigate this issue.