VYPR

Syncovery

by Super Flexible Software GmbH & Co. KG

CVEs (3)

  • CVE-2022-36536CriSep 16, 2022
    risk 0.67cvss 9.8epss 0.04

    An issue in the component post_applogin.php of Super Flexible Software GmbH & Co. KG Syncovery 9 for Linux v9.47x and below allows attackers to escalate privileges via creating crafted session tokens.

  • CVE-2022-36534HigSep 16, 2022
    risk 0.64cvss 8.8epss 0.52

    Super Flexible Software GmbH & Co. KG Syncovery 9 for Linux v9.47x and below was discovered to contain multiple remote code execution (RCE) vulnerabilities via the Job_ExecuteBefore and Job_ExecuteAfter parameters at post_profilesettings.php.

  • CVE-2022-36533MedSep 16, 2022
    risk 0.38cvss 5.4epss 0.42

    Super Flexible Software GmbH & Co. KG Syncovery 9 for Linux v9.47x and below was discovered to contain a cross-site scripting (XSS) vulnerability.