VYPR

CWE-121

Stack-based Buffer Overflow

VariantDraftLikelihood: High

Description

A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (3,626)

page 152 of 182
  • CVE-2024-32311MedApr 17, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda FH1203 v2.0.1.6 firmware has a stack overflow vulnerability via the adslPwd parameter in the formWanParameterSetting function.

  • CVE-2024-32287MedApr 17, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda W30E v1.0 V1.0.1.25(633) firmware has a stack overflow vulnerability via the qos parameter in the fromqossetting function.

  • CVE-2024-32313MedApr 17, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda FH1205 V2.0.0.7(775) firmware has a stack overflow vulnerability located via the adslPwd parameter of the formWanParameterSetting function.

  • CVE-2024-30840MedApr 15, 2024
    risk 0.42cvss 6.5epss 0.00

    A Stack Overflow vulnerability in Tenda AC15 v15.03.05.18 allows attackers to cause a denial of service via the LISTEN parameter in the fromDhcpListClient function.

  • CVE-2024-23594MedApr 15, 2024
    risk 0.42cvss 6.4epss 0.00

    A buffer overflow vulnerability was reported in a system recovery bootloader that was part of the Lenovo preloaded Windows 7 and 8 operating systems from 2012 to 2014 that could allow a privileged attacker with local access to execute arbitrary code.

  • CVE-2024-30639MedMar 29, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability in the page parameter of fromAddressNat function.

  • CVE-2024-30636MedMar 29, 2024
    risk 0.42cvss 6.5epss 0.00

    Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability via the PPPOEPassword parameter in the formQuickIndex function.

  • CVE-2024-30633MedMar 29, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the security parameter from the formWifiBasicSet function.

  • CVE-2024-30632MedMar 29, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the security_5g parameter from formWifiBasicSet function.

  • CVE-2024-30623MedMar 29, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the page parameter from fromDhcpListClient function.

  • CVE-2024-30603MedMar 28, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda FH1203 v2.0.1.6 has a stack overflow vulnerability in the urls parameter of the saveParentControlInfo function.

  • CVE-2024-30598MedMar 28, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda FH1203 v2.0.1.6 firmware has a stack overflow vulnerability in the security_5g parameter of the formWifiBasicSet function.

  • CVE-2024-30597MedMar 28, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda FH1203 v2.0.1.6 firmware has a stack overflow vulnerability in the security parameter of the formWifiBasicSet function.

  • CVE-2024-30590MedMar 28, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the schedEndTime parameter of the setSchedWifi function.

  • CVE-2024-30586MedMar 28, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the security_5g parameter of the formWifiBasicSet function.

  • CVE-2024-30585MedMar 28, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the deviceId parameter of the saveParentControlInfo function.

  • CVE-2024-30594MedMar 28, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the deviceMac parameter of the addWifiMacFilter function.

  • CVE-2024-28447MedMar 19, 2024
    risk 0.42cvss 6.5epss 0.01

    Shenzhen Libituo Technology Co., Ltd LBT-T300-mini1 v1.2.9 was discovered to contain a buffer overflow via lan_ipaddr parameters at /apply.cgi.

  • CVE-2024-28547MedMar 18, 2024
    risk 0.42cvss 6.5epss 0.01

    Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the firewallEn parameter of formSetFirewallCfg function.

  • CVE-2024-20336MedMar 6, 2024
    risk 0.42cvss 6.5epss 0.01

    A vulnerability in the web-based user interface of Cisco Small Business 100, 300, and 500 Series Wireless APs could allow an authenticated, remote attacker to perform buffer overflow attacks against an affected device. In order to exploit this vulnerability, the attacker must…