CVE-2017-17088
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 7.0%
from disclosure to weapon0 days
Published on NVDDec 19
1st PoCDec 15
exploitation probability
7.0%top 7% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
The Enterprise version of SyncBreeze 10.2.12 and earlier is affected by a Remote Denial of Service vulnerability. The web server does not check bounds when reading server requests in the Host header on making a connection, resulting in a classic Buffer Overflow that causes a Denial of Service.
Affected products
n/a · n/apublic PoCs found — 3
cve_referencepacketstormsecurity.com/files/145435/Sync-Breeze-10.2.12-Denial-Of-Service.htmlunverifiedcve_referencewww.exploit-db.com/exploits/43344/unverifiedexploitdbwww.exploit-db.com/exploits/43344unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.