Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 05 Mar 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:flexense:syncbreeze:15.2.24:*:*:*:*:*:*:* |
Tue, 16 Dec 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Flexense
Flexense syncbreeze |
|
| Vendors & Products |
Flexense
Flexense syncbreeze |
Mon, 15 Dec 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 15 Dec 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SyncBreeze 15.2.24 contains a denial of service vulnerability in the login authentication mechanism that allows attackers to crash the service. Attackers can send an oversized password parameter with repeated 'password=' values to overwhelm the login endpoint and potentially disrupt service availability. | |
| Title | SyncBreeze 15.2.24 Denial of Service via Login Endpoint Overflow | |
| Weaknesses | CWE-400 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-04-07T14:06:59.674Z
Reserved: 2025-12-13T14:25:04.998Z
Link: CVE-2023-53873
Updated: 2025-12-15T21:41:06.345Z
Status : Deferred
Published: 2025-12-15T21:15:49.833
Modified: 2026-04-15T00:35:42.020
Link: CVE-2023-53873
No data.
OpenCVE Enrichment
Updated: 2025-12-16T17:11:21Z