CVE-2017-17088

HIGH

SyncBreeze <10.2.12 - DoS

Title source: llm

Description

The Enterprise version of SyncBreeze 10.2.12 and earlier is affected by a Remote Denial of Service vulnerability. The web server does not check bounds when reading server requests in the Host header on making a connection, resulting in a classic Buffer Overflow that causes a Denial of Service.

Exploits (2)

exploitdb WORKING POC
by Manuel García Cárdenas · pythondoswindows
https://www.exploit-db.com/exploits/43344
gitlab STUB
by ahmedahmohammad24 · poc
https://gitlab.com/ahmedahmohammad24/lab

Scores

CVSS v3 7.5
EPSS 0.3034
EPSS Percentile 96.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-119
Status published
Products (1)
flexense/syncbreeze < 10.2.12
Published Dec 19, 2017
Tracked Since Feb 18, 2026