CWE-787
Out-of-bounds Write
Description
The product writes data past the end, or before the beginning, of the intended buffer.
Hierarchy (View 1000)
CVEs mapped to this weakness (14,531)
page 36 of 727| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-13880 | Cri | 0.64 | 9.8 | 0.01 | Jan 5, 2024 | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+1cbf heap-based out-of-bounds write. | ||
| CVE-2020-13879 | Cri | 0.64 | 9.8 | 0.01 | Jan 5, 2024 | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+214f heap-based out-of-bounds write. | ||
| CVE-2020-13878 | Cri | 0.64 | 9.8 | 0.01 | Jan 5, 2024 | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+27ef heap-based out-of-bounds write. | ||
| CVE-2024-22086 | Cri | 0.64 | 9.8 | 0.01 | Jan 5, 2024 | handle_request in http.c in cherry through 4b877df has an sscanf stack-based buffer overflow via a long URI, leading to remote code execution. | ||
| CVE-2023-32874 | Cri | 0.64 | 9.8 | 0.01 | Jan 2, 2024 | In Modem IMS Stack, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01161803; Issue ID: MOLY01161803… | ||
| CVE-2023-51136 | Cri | 0.64 | 9.8 | 0.01 | Dec 30, 2023 | TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formRebootSchedule. | ||
| CVE-2023-51135 | Cri | 0.64 | 9.8 | 0.01 | Dec 30, 2023 | TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formPasswordSetup. | ||
| CVE-2023-51133 | Cri | 0.64 | 9.8 | 0.01 | Dec 30, 2023 | TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formRoute. | ||
| CVE-2023-52174 | Cri | 0.64 | 9.8 | 0.01 | Dec 29, 2023 | XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3125D6. | ||
| CVE-2023-52173 | Cri | 0.64 | 9.8 | 0.01 | Dec 29, 2023 | XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3ADBD0. | ||
| CVE-2023-51084 | Cri | 0.64 | 9.8 | 0.01 | Dec 27, 2023 | hyavijava v6.0.07.1 was discovered to contain a stack overflow via the ResultConverter.convert2Xml method. | ||
| CVE-2023-51102 | Cri | 0.64 | 9.8 | 0.01 | Dec 26, 2023 | Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a stack overflow via the function formWifiMacFilterSet. | ||
| CVE-2023-51101 | Cri | 0.64 | 9.8 | 0.01 | Dec 26, 2023 | Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a stack overflow via the function formSetUplinkInfo. | ||
| CVE-2023-51097 | Cri | 0.64 | 9.8 | 0.01 | Dec 26, 2023 | Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a stack overflow via the function formSetAutoPing. | ||
| CVE-2023-51093 | Cri | 0.64 | 9.8 | 0.01 | Dec 26, 2023 | Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function fromSetLocalVlanInfo. | ||
| CVE-2023-51091 | Cri | 0.64 | 9.8 | 0.08 | Dec 26, 2023 | Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function R7WebsSecurityHandler. | ||
| CVE-2023-51090 | Cri | 0.64 | 9.8 | 0.01 | Dec 26, 2023 | Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function formGetWeiXinConfig. | ||
| CVE-2023-51095 | Cri | 0.64 | 9.8 | 0.01 | Dec 26, 2023 | Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function formDelWlRfPolicy. | ||
| CVE-2023-50992 | Cri | 0.64 | 9.8 | 0.01 | Dec 20, 2023 | Tenda i29 v1.0 V1.0.0.5 was discovered to contain a stack overflow via the ip parameter in the setPing function. | ||
| CVE-2023-50990 | Cri | 0.64 | 9.8 | 0.01 | Dec 20, 2023 | Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the rebootTime parameter in the sysScheduleRebootSet function. |
- risk 0.64cvss 9.8epss 0.01
IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+1cbf heap-based out-of-bounds write.
- risk 0.64cvss 9.8epss 0.01
IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+214f heap-based out-of-bounds write.
- risk 0.64cvss 9.8epss 0.01
IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+27ef heap-based out-of-bounds write.
- risk 0.64cvss 9.8epss 0.01
handle_request in http.c in cherry through 4b877df has an sscanf stack-based buffer overflow via a long URI, leading to remote code execution.
- risk 0.64cvss 9.8epss 0.01
In Modem IMS Stack, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01161803; Issue ID: MOLY01161803…
- risk 0.64cvss 9.8epss 0.01
TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formRebootSchedule.
- risk 0.64cvss 9.8epss 0.01
TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formPasswordSetup.
- risk 0.64cvss 9.8epss 0.01
TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formRoute.
- risk 0.64cvss 9.8epss 0.01
XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3125D6.
- risk 0.64cvss 9.8epss 0.01
XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3ADBD0.
- risk 0.64cvss 9.8epss 0.01
hyavijava v6.0.07.1 was discovered to contain a stack overflow via the ResultConverter.convert2Xml method.
- risk 0.64cvss 9.8epss 0.01
Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a stack overflow via the function formWifiMacFilterSet.
- risk 0.64cvss 9.8epss 0.01
Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a stack overflow via the function formSetUplinkInfo.
- risk 0.64cvss 9.8epss 0.01
Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a stack overflow via the function formSetAutoPing.
- risk 0.64cvss 9.8epss 0.01
Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function fromSetLocalVlanInfo.
- risk 0.64cvss 9.8epss 0.08
Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function R7WebsSecurityHandler.
- risk 0.64cvss 9.8epss 0.01
Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function formGetWeiXinConfig.
- risk 0.64cvss 9.8epss 0.01
Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function formDelWlRfPolicy.
- risk 0.64cvss 9.8epss 0.01
Tenda i29 v1.0 V1.0.0.5 was discovered to contain a stack overflow via the ip parameter in the setPing function.
- risk 0.64cvss 9.8epss 0.01
Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the rebootTime parameter in the sysScheduleRebootSet function.