CVE-2025-59899 | Flexense Sync Breeze Enterprise Server 10.4.18 /server_options cross site scripting
A vulnerability, which was classified as problematic, was found in Flexense Sync Breeze Enterprise Server and Disk Pulse Enterprise 10.4.18. Affected by this issue is some unknown functionality of the file /server_options. The manipulation of the argument tasks_logs_dir/errors_logs_dir/error_notifications_address/status_notifications_address/status_reports_address results in cross site scripting.
This vulnerability is reported as CVE-2025-59899. The attack can be launched remotely. No exploit exists.