VYPR

DupScout

by Flexense

CVEs (3)

  • CVE-2017-13696CriJan 24, 2018
    risk 0.73cvss 9.8epss 0.79

    A buffer overflow vulnerability lies in the web server component of Dup Scout Enterprise 9.9.14, Disk Savvy Enterprise 9.9.14, Sync Breeze Enterprise 9.9.16, and Disk Pulse Enterprise 9.9.16 where an attacker can craft a malicious GET request and exploit the web server…

  • CVE-2020-29659CriDec 9, 2020
    risk 0.64cvss 9.8epss 0.05

    A buffer overflow in the web server of Flexense DupScout Enterprise 10.0.18 allows a remote anonymous attacker to execute code as SYSTEM by overflowing the sid parameter via a GET /settings&sid= attack.

  • CVE-2018-10566MedMay 2, 2018
    risk 0.40cvss 6.1epss 0.01

    XSS exists in Flexense DupScout Enterprise from v10.0.18 to v10.7.