Filtered by vendor Flexense Subscriptions
Filtered by product Disk Pulse Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-34108 1 Flexense 1 Disk Pulse 2026-07-14 N/A
A stack-based buffer overflow vulnerability exists in the login functionality of Disk Pulse Enterprise version 9.0.34. An attacker can send a specially crafted HTTP POST request to the /login endpoint with an overly long username parameter, causing a buffer overflow in the libspp.dll component. Successful exploitation allows arbitrary code execution with SYSTEM privileges.
CVE-2017-15663 1 Flexense 1 Disk Pulse 2024-11-21 N/A
In Flexense Disk Pulse Enterprise v10.1.18, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to control port 9120.