VYPR

CWE-787

Out-of-bounds Write

BaseDraftLikelihood: High

Description

The product writes data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

CVEs mapped to this weakness (14,531)

page 48 of 727
  • CVE-2023-4058CriAug 1, 2023
    risk 0.64cvss 9.8epss 0.01

    Memory safety bugs present in Firefox 115. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 116.

  • CVE-2023-4057CriAug 1, 2023
    risk 0.64cvss 9.8epss 0.01

    Memory safety bugs present in Firefox 115, Firefox ESR 115.0, and Thunderbird 115.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox <…

  • CVE-2023-4056CriAug 1, 2023
    risk 0.64cvss 9.8epss 0.01

    Memory safety bugs present in Firefox 115, Firefox ESR 115.0, Firefox ESR 102.13, Thunderbird 115.0, and Thunderbird 102.13. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary…

  • CVE-2023-31710CriAug 1, 2023
    risk 0.64cvss 9.8epss 0.01

    TP-Link Archer AX21(US)_V3_1.1.4 Build 20230219 and AX21(US)_V3.6_1.1.4 Build 20230219 are vulnerable to Buffer Overflow.

  • CVE-2023-38604CriJul 28, 2023
    risk 0.64cvss 9.8epss 0.01

    An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in watchOS 9.6, macOS Big Sur 11.7.9, iOS 15.7.8 and iPadOS 15.7.8, macOS Monterey 12.6.8, tvOS 16.6, iOS 16.6 and iPadOS 16.6, macOS Ventura 13.5. An app may be able to execute…

  • CVE-2023-33308CriJul 26, 2023
    risk 0.64cvss 9.8epss 0.02

    A stack-based overflow vulnerability [CWE-124] in Fortinet FortiOS version 7.0.0 through 7.0.10 and 7.2.0 through 7.2.3 and FortiProxy version 7.0.0 through 7.0.9 and 7.2.0 through 7.2.2 allows a remote unauthenticated attacker to execute arbitrary code or command via crafted…

  • CVE-2023-38632CriJul 21, 2023
    risk 0.64cvss 9.8epss 0.02

    async-sockets-cpp through 0.3.1 has a stack-based buffer overflow in tcpsocket.hpp when processing malformed TCP packets.

  • CVE-2021-34123CriJul 18, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered on atasm, version 1.09. A stack-buffer-overflow vulnerability in function aprintf() in asm.c allows attackers to execute arbitrary code on the system via a crafted file.

  • CVE-2023-37723CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromqossetting.

  • CVE-2023-37722CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromSafeUrlFilter.

  • CVE-2023-37721CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromSafeMacFilter.

  • CVE-2023-37719CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromP2pListFilter.

  • CVE-2023-37718CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromSafeClientFilter.

  • CVE-2023-37717CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromDhcpListClient.

  • CVE-2023-37716CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromNatStaticSetting.

  • CVE-2023-37715CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function frmL7ProtForm.

  • CVE-2023-37714CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromRouteStatic.

  • CVE-2023-25078CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Server or Console Station DoS due to heap overflow occurring during the handling of a specially crafted message for a specific configuration operation.  See Honeywell Security Notification for recommendations on upgrading and versioning.

  • CVE-2023-24480CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Controller DoS due to stack overflow when decoding a message from the server.  See Honeywell Security Notification for recommendations on upgrading and versioning.

  • CVE-2023-23585CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Experion server DoS due to heap overflow occurring during the handling of a specially crafted message for a specific configuration operation.  See Honeywell Security Notification for recommendations on upgrading and versioning.