CVE-2018-8065 is a denial-of-service vulnerability affecting Flexense SyncBreeze Enterprise 10.6.24. It allows an unauthenticated attacker to trigger a user mode write access violation in the syncbrs.exe memory region by sending rapid HTTP requests with excessively long header values or URIs. This vulnerability has a CVSSv3 score of 7.5 (High), indicating a network-based attack with low complexity leading to high availability impact. While not observed in active exploitation (KEV), a Metasploit module exists, and its EPSS score suggests a high likelihood of exploitation. Community discussion and media coverage for this CVE are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.6.24CPE matchmatch criteria | cpe:2.3:a:flexense:syncbreeze:10.6.24:*:*:*:enterprise:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.