Skip to content
Noroxi

Sync-in records

3 published records for vendor sync-in.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
66.7%
Median publish → KEV
No record has entered KEV

All records

3 records
  • Username Enumeration via Timing Attack

    MediumCVSS 6.9No exploitEPSS 0%

    sync-in · sync-in serverMay 8, 2026

  • A Stored Cross-Site Scripting (XSS) vulnerability in Sync-in Server before 1.9.3 allows an authenticated attacker to execute arbitrary JavaS

    MediumCVSS 6.1No exploitEPSS 0%

    sync-in · sync-in serverFeb 20, 2026

  • Directory traversal vulnerability in Sync In server thru 1.1.1 allowing authenticated attackers to gain read and write access to the system

    MediumCVSS 5.3No exploitEPSS 1%

    sync-in · sync-in serverSep 19, 2025