Flexense Sync Breeze Enterprise Server and Disk Pulse Enterprise Remote Denial-of-Service Vulnerability

Vulnerability

A remote denial-of-service vulnerability has been identified in Sync Breeze Enterprise Server and Disk Pulse Enterprise, both version 10.4.18. The issue arises in the configuration restore functionality, where insufficient validation of user-supplied data allows an attacker to send malicious requests that alter the configuration file. This manipulation can cause the application to become unresponsive, and in some cases, the service may not recover without a complete reinstallation, as the corrupted configuration prevents the service from restarting manually.

Impact

Exploitation of this vulnerability leads to a remote denial-of-service condition, causing the application to become unresponsive. The service may require a complete reinstallation to restore functionality, as the configuration file becomes corrupted and prevents manual restarts.

Added: Jan 28, 2026, 12:29 PM
Updated: Jan 28, 2026, 12:29 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
5.0
exploitability
5.9
remediation
0.0
relevance
2.4
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.