Release date:
Updated on:
Affected Systems:
Flexense SyncBreeze v2.2.30
Description:
--------------------------------------------------------------------------------
Sync Breeze Server is an easy-to-use file synchronization Server.
The Sync Worker Process crashes or executes arbitrary code.
<* Source: Xsploited Security (http://www.x-sploited.com /)
Link: http://secunia.com/advisories/41748/
*>
Test method:
--------------------------------------------------------------------------------
Alert
The following procedures (methods) may be offensive and are intended only for security research and teaching. Users are at your own risk!
Http://www.exploit-db.com/download/15231
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Flexense
--------
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.syncbreeze.com/index.html