Flexense Dupscout vulnerabilities
3 known vulnerabilities affecting flexense/dupscout.
Total CVEs
3
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL2MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2017-13696P1CRITICALCVSS 9.8PoCv9.9.142018-01-24
CVE-2017-13696 [CRITICAL] CWE-119 CVE-2017-13696: A buffer overflow vulnerability lies in the web server component of Dup Scout Enterprise 9.9.14, Dis
A buffer overflow vulnerability lies in the web server component of Dup Scout Enterprise 9.9.14, Disk Savvy Enterprise 9.9.14, Sync Breeze Enterprise 9.9.16, and Disk Pulse Enterprise 9.9.16 where an attacker can craft a malicious GET request and exploit the web server component. Successful exploitation of the software will allow an attacker to ga
nvd
CVE-2020-29659P2CRITICALCVSS 9.8v10.0.182020-12-09
CVE-2020-29659 [CRITICAL] CWE-120 CVE-2020-29659: A buffer overflow in the web server of Flexense DupScout Enterprise 10.0.18 allows a remote anonymou
A buffer overflow in the web server of Flexense DupScout Enterprise 10.0.18 allows a remote anonymous attacker to execute code as SYSTEM by overflowing the sid parameter via a GET /settings&sid= attack.
nvd
CVE-2018-10566P4MEDIUMCVSS 6.1≥ 10.0.18, ≤ 10.72018-05-02
CVE-2018-10566 [MEDIUM] CWE-79 CVE-2018-10566: XSS exists in Flexense DupScout Enterprise from v10.0.18 to v10.7.
XSS exists in Flexense DupScout Enterprise from v10.0.18 to v10.7.
nvd