VYPR

CWE-125

Out-of-bounds Read

BaseDraft

Description

The product reads data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-540

CVEs mapped to this weakness (9,413)

page 138 of 471
  • CVE-2024-21477HigMay 6, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing a protected 802.11az Fine Time Measurement (FTM) frame.

  • CVE-2024-33763HigMay 1, 2024
    risk 0.49cvss 7.5epss 0.01

    lunasvg v2.3.9 was discovered to contain a stack-buffer-underflow at lunasvg/source/layoutcontext.cpp.

  • CVE-2024-33270HigApr 30, 2024
    risk 0.49cvss 7.5epss 0.01

    An issue in FME Modules fileuploads v.2.0.3 and before and fixed in v2.0.4 allows a remote attacker to obtain sensitive information via the uploadfiles.php component.

  • CVE-2024-34049HigApr 30, 2024
    risk 0.49cvss 7.5epss 0.01

    Open Networking Foundation SD-RAN Rimedo rimedo-ts 0.1.1 has a slice bounds out-of-range panic in "return plmnIdString[0:3], plmnIdString[3:]" in reader.go.

  • CVE-2024-23527HigApr 25, 2024
    risk 0.49cvss 7.5epss 0.02

    An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory.

  • CVE-2024-23532HigApr 19, 2024
    risk 0.49cvss 7.5epss 0.02

    An out-of-bounds Read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows an authenticated remote attacker to perform denial of service attacks. In certain conditions this could also lead to remote code execution.

  • CVE-2024-23530HigApr 19, 2024
    risk 0.49cvss 7.5epss 0.02

    An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory.

  • CVE-2024-23529HigApr 19, 2024
    risk 0.49cvss 7.5epss 0.02

    An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory.

  • CVE-2024-23528HigApr 19, 2024
    risk 0.49cvss 7.5epss 0.02

    An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory.

  • CVE-2024-23526HigApr 19, 2024
    risk 0.49cvss 7.5epss 0.02

    An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory.

  • CVE-2023-51391HigApr 16, 2024
    risk 0.49cvss 7.5epss 0.01

    A bug in Micrium OS Network HTTP Server permits an invalid pointer dereference during header processing - potentially allowing a device crash and Denial of Service.

  • CVE-2024-23911HigApr 15, 2024
    risk 0.49cvss 7.5epss 0.01

    Out-of-bounds read vulnerability caused by improper checking of the option length values in IPv6 NDP packets exists in Cente middleware TCP/IP Network Series, which may allow an unauthenticated attacker to stop the device operations by sending a specially crafted packet.

  • CVE-2024-30604HigMar 28, 2024
    risk 0.49cvss 7.5epss 0.01

    Tenda FH1203 v2.0.1.6 has a stack overflow vulnerability in the list1 parameter of the fromDhcpListClient function.

  • CVE-2024-22040HigMar 12, 2024
    risk 0.49cvss 7.5epss 0.01

    A vulnerability has been identified in Cerberus PRO EN Engineering Tool (All versions), Cerberus PRO EN Fire Panel FC72x IP6 (All versions), Cerberus PRO EN Fire Panel FC72x IP7 (All versions), Cerberus PRO EN Fire Panel FC72x IP8 (All versions < IP8 SR4), Cerberus PRO EN X200…

  • CVE-2024-26003HigMar 12, 2024
    risk 0.49cvss 7.5epss 0.01

    An unauthenticated remote attacker can DoS the control agent due to a out-of-bounds read which may prevent or disrupt the charging functionality. 

  • CVE-2024-27206HigMar 11, 2024
    risk 0.49cvss 7.5epss 0.00

    there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-22011HigMar 11, 2024
    risk 0.49cvss 7.5epss 0.00

    In ss_ProcessRejectComponent of ss_MmConManagement.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-43539HigMar 4, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing an improperly formatted 802.11az Fine Time Measurement protocol frame.

  • CVE-2024-1869HigMar 1, 2024
    risk 0.49cvss 7.5epss 0.02

    Certain HP DesignJet print products are potentially vulnerable to information disclosure related to accessing memory out-of-bounds when using the general-purpose gateway (GGW) over port 9220.

  • CVE-2024-1546HigFeb 20, 2024
    risk 0.49cvss 7.5epss 0.01

    When storing and re-accessing data on a networking channel, the length of buffers may have been confused, resulting in an out-of-bounds memory read. This vulnerability affects Firefox < 123, Firefox ESR < 115.8, and Thunderbird < 115.8.