CWE-787
Out-of-bounds Write
Description
The product writes data past the end, or before the beginning, of the intended buffer.
Hierarchy (View 1000)
CVEs mapped to this weakness (14,531)
page 51 of 727| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-20520 | Cri | 0.64 | 9.8 | 0.01 | May 9, 2023 | Improper access control settings in ASP Bootloader may allow an attacker to corrupt the return address causing a stack-based buffer overrun potentially leading to arbitrary code execution. | ||
| CVE-2023-27953 | Cri | 0.64 | 9.8 | 0.02 | May 8, 2023 | The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3, macOS Monterey 12.6.4, macOS Big Sur 11.7.5. A remote user may be able to cause unexpected system termination or corrupt kernel memory. | ||
| CVE-2023-29696 | — | Cri | 0.64 | 9.8 | 0.01 | May 8, 2023 | H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function version_set. | |
| CVE-2023-29693 | — | Cri | 0.64 | 9.8 | 0.01 | May 8, 2023 | H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function set_tftp_upgrad. | |
| CVE-2023-27973 | Cri | 0.64 | 9.8 | 0.01 | Apr 28, 2023 | Certain HP LaserJet Pro print products are potentially vulnerable to Heap Overflow and/or Remote Code Execution. | ||
| CVE-2023-30378 | Cri | 0.64 | 9.8 | 0.01 | Apr 24, 2023 | In Tenda AC15 V15.03.05.19, the function "sub_8EE8" contains a stack-based buffer overflow vulnerability. | ||
| CVE-2023-30376 | Cri | 0.64 | 9.8 | 0.01 | Apr 24, 2023 | In Tenda AC15 V15.03.05.19, the function "henan_pppoe_user" contains a stack-based buffer overflow vulnerability. | ||
| CVE-2023-30375 | Cri | 0.64 | 9.8 | 0.01 | Apr 24, 2023 | In Tenda AC15 V15.03.05.19, the function "getIfIp" contains a stack-based buffer overflow vulnerability. | ||
| CVE-2023-30373 | Cri | 0.64 | 9.8 | 0.01 | Apr 24, 2023 | In Tenda AC15 V15.03.05.19, the function "xian_pppoe_user" contains a stack-based buffer overflow vulnerability. | ||
| CVE-2023-30372 | Cri | 0.64 | 9.8 | 0.01 | Apr 24, 2023 | In Tenda AC15 V15.03.05.19, The function "xkjs_ver32" contains a stack-based buffer overflow vulnerability. | ||
| CVE-2023-30371 | Cri | 0.64 | 9.8 | 0.01 | Apr 24, 2023 | In Tenda AC15 V15.03.05.19, the function "sub_ED14" contains a stack-based buffer overflow vulnerability. | ||
| CVE-2023-30370 | Cri | 0.64 | 9.8 | 0.01 | Apr 24, 2023 | In Tenda AC15 V15.03.05.19, the function GetValue contains a stack-based buffer overflow vulnerability. | ||
| CVE-2023-30369 | Cri | 0.64 | 9.8 | 0.01 | Apr 24, 2023 | Tenda AC15 V15.03.05.19 is vulnerable to Buffer Overflow. | ||
| CVE-2023-30368 | Cri | 0.64 | 9.8 | 0.01 | Apr 24, 2023 | Tenda AC5 V15.03.06.28 is vulnerable to Buffer Overflow via the initWebs function. | ||
| CVE-2023-29665 | Cri | 0.64 | 9.8 | 0.01 | Apr 17, 2023 | D-Link DIR823G_V1.0.2B05 was discovered to contain a stack overflow via the NewPassword parameters in SetPasswdSettings. | ||
| CVE-2022-25740 | Cri | 0.64 | 9.8 | 0.00 | Apr 13, 2023 | Memory corruption in modem due to buffer overwrite while building an IPv6 multicast address based on the MAC address of the iface | ||
| CVE-2022-25678 | Cri | 0.64 | 9.8 | 0.00 | Apr 13, 2023 | Memory correction in modem due to buffer overwrite during coap connection | ||
| CVE-2023-26064 | Cri | 0.64 | 9.8 | 0.01 | Apr 10, 2023 | Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write. | ||
| CVE-2022-46709 | Cri | 0.64 | 9.8 | 0.01 | Apr 10, 2023 | A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Ventura 13, iOS 16. An app may be able to execute arbitrary code with kernel privileges | ||
| CVE-2023-27720 | Cri | 0.64 | 9.8 | 0.01 | Apr 9, 2023 | D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_48d630 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload. |
- risk 0.64cvss 9.8epss 0.01
Improper access control settings in ASP Bootloader may allow an attacker to corrupt the return address causing a stack-based buffer overrun potentially leading to arbitrary code execution.
- risk 0.64cvss 9.8epss 0.02
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3, macOS Monterey 12.6.4, macOS Big Sur 11.7.5. A remote user may be able to cause unexpected system termination or corrupt kernel memory.
- risk 0.64cvss 9.8epss 0.01
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function version_set.
- risk 0.64cvss 9.8epss 0.01
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function set_tftp_upgrad.
- risk 0.64cvss 9.8epss 0.01
Certain HP LaserJet Pro print products are potentially vulnerable to Heap Overflow and/or Remote Code Execution.
- risk 0.64cvss 9.8epss 0.01
In Tenda AC15 V15.03.05.19, the function "sub_8EE8" contains a stack-based buffer overflow vulnerability.
- risk 0.64cvss 9.8epss 0.01
In Tenda AC15 V15.03.05.19, the function "henan_pppoe_user" contains a stack-based buffer overflow vulnerability.
- risk 0.64cvss 9.8epss 0.01
In Tenda AC15 V15.03.05.19, the function "getIfIp" contains a stack-based buffer overflow vulnerability.
- risk 0.64cvss 9.8epss 0.01
In Tenda AC15 V15.03.05.19, the function "xian_pppoe_user" contains a stack-based buffer overflow vulnerability.
- risk 0.64cvss 9.8epss 0.01
In Tenda AC15 V15.03.05.19, The function "xkjs_ver32" contains a stack-based buffer overflow vulnerability.
- risk 0.64cvss 9.8epss 0.01
In Tenda AC15 V15.03.05.19, the function "sub_ED14" contains a stack-based buffer overflow vulnerability.
- risk 0.64cvss 9.8epss 0.01
In Tenda AC15 V15.03.05.19, the function GetValue contains a stack-based buffer overflow vulnerability.
- risk 0.64cvss 9.8epss 0.01
Tenda AC15 V15.03.05.19 is vulnerable to Buffer Overflow.
- risk 0.64cvss 9.8epss 0.01
Tenda AC5 V15.03.06.28 is vulnerable to Buffer Overflow via the initWebs function.
- risk 0.64cvss 9.8epss 0.01
D-Link DIR823G_V1.0.2B05 was discovered to contain a stack overflow via the NewPassword parameters in SetPasswdSettings.
- risk 0.64cvss 9.8epss 0.00
Memory corruption in modem due to buffer overwrite while building an IPv6 multicast address based on the MAC address of the iface
- risk 0.64cvss 9.8epss 0.00
Memory correction in modem due to buffer overwrite during coap connection
- risk 0.64cvss 9.8epss 0.01
Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write.
- risk 0.64cvss 9.8epss 0.01
A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Ventura 13, iOS 16. An app may be able to execute arbitrary code with kernel privileges
- risk 0.64cvss 9.8epss 0.01
D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_48d630 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.