High severity7.8NVD Advisory· Published Dec 3, 2017· Updated May 13, 2026
CVE-2017-17099
CVE-2017-17099
Description
There exists an unauthenticated SEH based Buffer Overflow vulnerability in the HTTP server of Flexense SyncBreeze Enterprise v10.1.16. When sending a GET request with an excessive length, it is possible for a malicious user to overwrite the SEH record and execute a payload that would run under the Windows SYSTEM account.
Affected products
1- cpe:2.3:a:flexense:syncbreeze:10.1.16:*:*:*:enterprise:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- packetstormsecurity.com/files/144586/Sync-Breeze-Enterprise-10.1.16-SEH-Overflow.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.exploit-db.com/exploits/42984/nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.