A buffer overflow vulnerability in Import Command in SyncBreeze prior to 10.6, DiskSorter prior to 10.6, DiskBoss prior to 8.9, DiskPulse prior to 10.6, DiskSavvy prior to 10.6, DupScout prior to 10.6, and VX Search prior to 10.6 allows malicious users to execute arbitrary code via a crafted XML file containing a long name attribute of a classify element.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
flexense syncbreeze 9.5.16 |
||
flexense disksorter 9.5.12 |
||
flexense diskboss 7.8.16 |