Security Advisory
CVE-2023-53873
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
SyncBreeze 15.2.24 contains a denial of service vulnerability in the login authentication mechanism that allows attackers to crash the service. Attackers can send an oversized password parameter with repeated password= values to overwhelm the login endpoint and potentially disrupt service availability.