Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Flexense

First CVE: Mar 6, 2017Active for: 9 yearsTotal CVEs: 53
52.9
VTI Score
TOP TARGET

Flexense develops a portfolio of Windows-based disk and file management utilities—including SyncBreeze, DiskPulse, DiskBoss, VX Search, and DiskSavvy—that target both individual users and small-to-medium enterprises for storage optimization and synchronization tasks. Vulnerabilities affecting this vendor skew strongly toward critical-severity outcomes and frequently acquire public exploit code, reflecting the local-system and web-interface attack surfaces present in desktop and administrative tools. The exposure recurs across these products through weakness classes centered on input handling and boundary validation: cross-site scripting, memory buffer overflows, unquoted search paths, cross-site request forgery, and improper security checks, which are characteristic of applications that combine filesystem access with local or network interfaces. The presence of these flaws across a tool portfolio widely installed in managed environments makes them relevant to defenders conducting inventory and remediation planning. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.

FAUCET AI Generated
53
Total CVEs
More Total CVEs than 99% of tracked vendors
0.7
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 10% of tracked vendors
7.5
Avg CVSS Score
Higher Avg CVSS Score than 71% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Flexense over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 6, 2017
9 years ago
Most Recent CVE
Feb 3, 2026
172 days ago

Products(12 total)

Top CVEs

Signals from CVEs in this vendor scope (53 CVEs).

53 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2018-8065HIGH
An issue was discovered in the web server in Flexense SyncBreeze Enterprise 10.6.24. There is a user mode write access violation on the syncbrs.exe memory region that can be trigge
Mar 12, 20187.582NOYES
CVE-2017-13696CRITICAL
A buffer overflow vulnerability lies in the web server component of Dup Scout Enterprise 9.9.14, Disk Savvy Enterprise 9.9.14, Sync Breeze Enterprise 9.9.16, and Disk Pulse Enterpr
Jan 24, 20189.881NOYES
CVE-2017-7310HIGH
A buffer overflow vulnerability in Import Command in SyncBreeze before 10.6, DiskSorter before 10.6, DiskBoss before 8.9, DiskPulse before 10.6, DiskSavvy before 10.6, DupScout bef
Mar 29, 20177.874NOYES
CVE-2018-5262CRITICAL
A stack-based buffer overflow in Flexense DiskBoss 8.8.16 and earlier allows unauthenticated remote attackers to execute arbitrary code in the context of a highly privileged accoun
Jan 12, 20189.864NOYES
CVE-2018-6481CRITICAL
A buffer overflow vulnerability in the control protocol of Disk Savvy Enterprise v10.4.18 allows remote attackers to execute arbitrary code by sending a crafted packet to TCP port
Feb 27, 20189.853NOYES
CVE-2017-14980CRITICAL
Buffer overflow in Sync Breeze Enterprise 10.0.28 allows remote attackers to have unspecified impact via a long username parameter to /login.
Oct 10, 20179.853NOYES
CVE-2017-6416CRITICAL
An issue was discovered in SysGauge 1.5.18. A buffer overflow vulnerability in SMTP connection verification leads to arbitrary code execution. The attack vector is a crafted SMTP d
Mar 6, 20179.848NOYES
CVE-2017-15220CRITICAL
Flexense VX Search Enterprise 10.1.12 is vulnerable to a buffer overflow via an empty POST request to a long URI beginning with a /../ substring. This allows remote attackers to ex
Oct 11, 20179.846NOYES
CVE-2018-5359HIGH
The server in Flexense SysGauge 3.6.18 operating on port 9221 can be exploited remotely with the attacker gaining system-level access because of a Buffer Overflow.
Jan 23, 20188.140NOYES
CVE-2017-15663HIGH
In Flexense Disk Pulse Enterprise v10.1.18, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to contr
Jan 10, 20187.538NOYES
View all 53 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products53 CVEs
30%
55%
15%
Severity distribution among all CVEs352,708 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local12 (22.6%)
Network41 (77.4%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low51 (96.2%)
High2 (3.8%)
Unknown0 (0.0%)
User Interaction
None31 (58.5%)
Unknown0 (0.0%)
Required22 (41.5%)
Privileges Required
Low20 (37.7%)
High0 (0.0%)
None33 (62.3%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (53 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
5 CVEs
9.4% of CVEs· 98th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
13 CVEs
24.5% of CVEs· 78th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Flexense.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Flexense — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Flexense's Products

View all 3 CNAs →

Top CWEs