vendor:
SyncBreeze
by:
Abdessalam king
7.5
CVSS
HIGH
Remote Buffer Overflow
CWE
Product Name: SyncBreeze
Affected Version From: 10.0.28
Affected Version To: 10.0.28
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows 7, Windows XP, Windows 10
2020
SyncBreeze 10.0.28 – ‘password’ Remote Buffer Overflow
This exploit targets the 'password' parameter in SyncBreeze version 10.0.28, causing a remote buffer overflow. The exploit allows an attacker to execute arbitrary code on the target system.
Mitigation:
Update to a patched version of SyncBreeze or apply vendor-supplied patches.