VYPR

CWE-787

Out-of-bounds Write

BaseDraftLikelihood: High

Description

The product writes data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

CVEs mapped to this weakness (14,531)

page 36 of 727
  • CVE-2020-13880CriJan 5, 2024
    risk 0.64cvss 9.8epss 0.01

    IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+1cbf heap-based out-of-bounds write.

  • CVE-2020-13879CriJan 5, 2024
    risk 0.64cvss 9.8epss 0.01

    IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+214f heap-based out-of-bounds write.

  • CVE-2020-13878CriJan 5, 2024
    risk 0.64cvss 9.8epss 0.01

    IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+27ef heap-based out-of-bounds write.

  • CVE-2024-22086CriJan 5, 2024
    risk 0.64cvss 9.8epss 0.01

    handle_request in http.c in cherry through 4b877df has an sscanf stack-based buffer overflow via a long URI, leading to remote code execution.

  • CVE-2023-32874CriJan 2, 2024
    risk 0.64cvss 9.8epss 0.01

    In Modem IMS Stack, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01161803; Issue ID: MOLY01161803…

  • CVE-2023-51136CriDec 30, 2023
    risk 0.64cvss 9.8epss 0.01

    TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formRebootSchedule.

  • CVE-2023-51135CriDec 30, 2023
    risk 0.64cvss 9.8epss 0.01

    TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formPasswordSetup.

  • CVE-2023-51133CriDec 30, 2023
    risk 0.64cvss 9.8epss 0.01

    TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formRoute.

  • CVE-2023-52174CriDec 29, 2023
    risk 0.64cvss 9.8epss 0.01

    XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3125D6.

  • CVE-2023-52173CriDec 29, 2023
    risk 0.64cvss 9.8epss 0.01

    XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3ADBD0.

  • CVE-2023-51084CriDec 27, 2023
    risk 0.64cvss 9.8epss 0.01

    hyavijava v6.0.07.1 was discovered to contain a stack overflow via the ResultConverter.convert2Xml method.

  • CVE-2023-51102CriDec 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a stack overflow via the function formWifiMacFilterSet.

  • CVE-2023-51101CriDec 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a stack overflow via the function formSetUplinkInfo.

  • CVE-2023-51097CriDec 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a stack overflow via the function formSetAutoPing.

  • CVE-2023-51093CriDec 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function fromSetLocalVlanInfo.

  • CVE-2023-51091CriDec 26, 2023
    risk 0.64cvss 9.8epss 0.08

    Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function R7WebsSecurityHandler.

  • CVE-2023-51090CriDec 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function formGetWeiXinConfig.

  • CVE-2023-51095CriDec 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function formDelWlRfPolicy.

  • CVE-2023-50992CriDec 20, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda i29 v1.0 V1.0.0.5 was discovered to contain a stack overflow via the ip parameter in the setPing function.

  • CVE-2023-50990CriDec 20, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the rebootTime parameter in the sysScheduleRebootSet function.