VYPR

CWE-787

Out-of-bounds Write

BaseDraftLikelihood: High

Description

The product writes data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

CVEs mapped to this weakness (14,670)

page 479 of 734
  • CVE-2022-48486HigJun 19, 2023
    risk 0.49cvss 7.5epss 0.00

    Configuration defects in the secure OS module.Successful exploitation of this vulnerability will affect availability.

  • CVE-2023-32209HigJun 19, 2023
    risk 0.49cvss 7.5epss 0.01

    A maliciously crafted favicon could have led to an out of memory crash. This vulnerability affects Firefox < 113.

  • CVE-2023-35110HigJun 14, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered jjson thru 0.1.7 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.

  • CVE-2023-34624HigJun 14, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered htmlcleaner thru = 2.28 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.

  • CVE-2023-34623HigJun 14, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered jtidy thru r938 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.

  • CVE-2023-34617HigJun 14, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered genson thru 1.6 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.

  • CVE-2023-34616HigJun 14, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered pbjson thru 0.4.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.

  • CVE-2023-34615HigJun 14, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered JSONUtil thru 5.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.

  • CVE-2023-34614HigJun 14, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered jmarsden/jsonij thru 0.5.2 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.

  • CVE-2023-34613HigJun 14, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered sojo thru 1.1.1 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.

  • CVE-2023-34612HigJun 14, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered ph-json thru 9.5.5 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.

  • CVE-2023-34611HigJun 14, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered mjson thru 1.4.1 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.

  • CVE-2023-34610HigJun 14, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered json-io thru 4.14.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.

  • CVE-2023-34609HigJun 14, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered flexjson thru 3.3 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.

  • CVE-2023-34942HigJun 12, 2023
    risk 0.49cvss 7.5epss 0.01

    Asus RT-N10LX Router v2.0.0.39 was discovered to contain a stack overflow via the mac parameter at /start-apply.html. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

  • CVE-2023-34940HigJun 12, 2023
    risk 0.49cvss 7.5epss 0.01

    Asus RT-N10LX Router v2.0.0.39 was discovered to contain a stack overflow via the url parameter at /start-apply.html. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

  • CVE-2023-33672HigJun 2, 2023
    risk 0.49cvss 7.5epss 0.01

    Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the fromSetWifiGusetBasic function.

  • CVE-2023-32324HigJun 1, 2023
    risk 0.49cvss 7.5epss 0.01

    OpenPrinting CUPS is an open source printing system. In versions 2.4.2 and prior, a heap buffer overflow vulnerability would allow a remote attacker to launch a denial of service (DoS) attack. A buffer overflow vulnerability in the function `format_log_line` could allow remote…

  • CVE-2023-32307HigMay 26, 2023
    risk 0.49cvss 7.5epss 0.01

    Sofia-SIP is an open-source SIP User-Agent library, compliant with the IETF RFC3261 specification. Referring to [GHSA-8599-x7rq-fr54](https://github.com/freeswitch/sofia-sip/security/advisories/GHSA-8599-x7rq-fr54), several other potential heap-over-flow and integer-overflow in…

  • CVE-2022-30114HigMay 19, 2023
    risk 0.49cvss 7.5epss 0.02

    A heap-based buffer overflow in a network service in Fastweb FASTGate MediaAccess FGA2130FWB, firmware version 18.3.n.0482_FW_230_FGA2130, and DGA4131FWB, firmware version up to 18.3.n.0462_FW_261_DGA4131, allows a remote attacker to reboot the device through a crafted HTTP…