VYPR

CWE-787

Out-of-bounds Write

BaseDraftLikelihood: High

Description

The product writes data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

CVEs mapped to this weakness (14,531)

page 614 of 727
  • CVE-2018-25253MedApr 4, 2026
    risk 0.40cvss 6.2epss 0.00

    Termite 3.4 contains a buffer overflow vulnerability in the User interface language settings field that allows local attackers to cause a denial of service by supplying an excessively long string. Attackers can paste a 2000-byte payload into the Settings User interface language…

  • CVE-2018-25252MedApr 4, 2026
    risk 0.40cvss 6.2epss 0.00

    FTP Voyager 16.2.0 contains a denial of service vulnerability that allows local attackers to crash the application by injecting oversized buffer data into the site profile IP field. Attackers can create a malicious site profile containing 500 bytes of repeated characters and…

  • CVE-2016-20050MedApr 4, 2026
    risk 0.40cvss 6.2epss 0.00

    NetSchedScan 1.0 contains a buffer overflow vulnerability in the scan Hostname/IP field that allows local attackers to crash the application by supplying an oversized input string. Attackers can paste a crafted payload containing 388 bytes of data followed by 4 bytes of EIP…

  • CVE-2026-34544HigApr 1, 2026
    risk 0.40cvss 7.3epss 0.00

    OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From version 3.4.0 to before version 3.4.8, a crafted B44 or B44A EXR file can cause an out-of-bounds write in any application that…

  • CVE-2018-25235MedMar 30, 2026
    risk 0.40cvss 6.2epss 0.00

    NetworkActiv Web Server 4.0 contains a buffer overflow vulnerability in the username field of the Security options that allows local attackers to crash the application by supplying an excessively long string. Attackers can trigger a denial of service by entering a crafted…

  • CVE-2018-25228MedMar 30, 2026
    risk 0.40cvss 6.2epss 0.00

    NetSetMan 4.7.1 contains a buffer overflow vulnerability in the Workgroup feature that allows local attackers to crash the application by supplying oversized input. Attackers can create a malicious configuration file with excessive data and paste it into the Workgroup field to…

  • CVE-2018-25226MedMar 30, 2026
    risk 0.40cvss 6.2epss 0.00

    FTPShell Server 6.83 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the account name field. Attackers can trigger a denial of service by pasting a 417-byte payload into the 'Account name to…

  • CVE-2019-25648MedMar 26, 2026
    risk 0.40cvss 6.2epss 0.00

    MyVideoConverter Pro 3.14 contains a local buffer overflow vulnerability that allows attackers to crash the application by supplying an excessively long string to the registration code input field. Attackers can paste a malicious payload containing 10000 bytes into the 'Copy and…

  • CVE-2018-25216MedMar 26, 2026
    risk 0.40cvss 6.2epss 0.00

    AnyBurn 4.3 contains a local buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the image file name field. Attackers can paste a 10000-byte payload into the 'Image file name' parameter during the 'Copy…

  • CVE-2018-25214MedMar 26, 2026
    risk 0.40cvss 6.2epss 0.00

    MegaPing contains a local buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized payload to the Destination Address List field in the Finger function. Attackers can paste a crafted buffer exceeding expected input limits into…

  • CVE-2019-25644MedMar 24, 2026
    risk 0.40cvss 6.2epss 0.00

    WinMPG Video Convert 9.3.5 and older versions contain a buffer overflow vulnerability in the registration dialog that allows local attackers to crash the application by supplying oversized input. Attackers can paste a large payload of 6000 bytes into the Name and Registration…

  • CVE-2019-25601MedMar 22, 2026
    risk 0.40cvss 6.2epss 0.00

    UltraVNC Launcher 1.2.2.4 contains a buffer overflow vulnerability in the Path vncviewer.exe property field that allows local attackers to crash the application by supplying an excessively long string. Attackers can input a 300-byte payload of repeated characters through the…

  • CVE-2019-25598MedMar 22, 2026
    risk 0.40cvss 6.2epss 0.00

    HeidiSQL Portable 10.1.0.5464 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the password field. Attackers can paste a buffer overflow payload into the password input during Microsoft SQL…

  • CVE-2019-25597MedMar 22, 2026
    risk 0.40cvss 6.2epss 0.00

    NSauditor 3.1.2.0 contains a buffer overflow vulnerability in the SNMP Auditor Community field that allows local attackers to crash the application by supplying an excessively long string. Attackers can paste a large payload into the Community field and trigger the Walk function…

  • CVE-2019-25591MedMar 22, 2026
    risk 0.40cvss 6.2epss 0.00

    DNSS Domain Name Search Software 2.1.8 contains a buffer overflow vulnerability in the registration code input field that allows local attackers to crash the application by submitting an excessively long string. Attackers can trigger a denial of service by pasting a malicious…

  • CVE-2019-25589MedMar 22, 2026
    risk 0.40cvss 6.2epss 0.00

    ZOC Terminal 7.23.4 contains a buffer overflow vulnerability in the Shell field of Program Settings that allows local attackers to crash the application by supplying an excessively long string. Attackers can paste a crafted payload into the Shell configuration field and trigger…

  • CVE-2019-25584MedMar 22, 2026
    risk 0.40cvss 6.2epss 0.00

    RarmaRadio 2.72.3 contains a buffer overflow vulnerability in the Server field of the Network settings that allows local attackers to crash the application by supplying an excessively long string. Attackers can paste a malicious payload exceeding 4000 bytes into the Server field…

  • CVE-2019-25569MedMar 21, 2026
    risk 0.40cvss 6.2epss 0.00

    RealTerm Serial Terminal 2.0.0.70 contains a stack-based buffer overflow vulnerability in the Echo Port field that allows local attackers to crash the application by triggering a structured exception handler (SEH) chain corruption. Attackers can craft a malicious input string…

  • CVE-2019-25567MedMar 21, 2026
    risk 0.40cvss 6.2epss 0.00

    Valentina Studio 9.0.5 Linux contains a buffer overflow vulnerability in the Host field of the connection dialog that allows local attackers to crash the application by supplying an oversized input string. Attackers can trigger the vulnerability by pasting a crafted buffer…

  • CVE-2019-25566MedMar 21, 2026
    risk 0.40cvss 6.2epss 0.00

    TransMac 12.3 contains a buffer overflow vulnerability in the volume name field that allows local attackers to crash the application by supplying an excessively long string. Attackers can create a malicious file with 1000 repeated characters, paste the content into the volume…