CVE-2025-59894 | Flexense Sync Breeze Enterprise Server 10.4.18 POST Request /delete_all_commands cross-site request forgery
A vulnerability classified as problematic was found in Flexense Sync Breeze Enterprise Server and Disk Pulse Enterprise 10.4.18. Affected is an unknown function of the file /delete_all_commands of the component POST Request Handler. Executing a manipulation can lead to cross-site request forgery.
This vulnerability is registered as CVE-2025-59894. It is possible to launch the attack remotely. No exploit is available.