VYPR

CWE-787

Out-of-bounds Write

BaseDraftLikelihood: High

Description

The product writes data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

CVEs mapped to this weakness (14,531)

page 663 of 727
  • CVE-2023-29913MedApr 21, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via the SetAPWifiorLedInfoById interface at /goform/aspForm.

  • CVE-2023-29912MedApr 21, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R200 R200V100R004 was discovered to contain a stack overflow via the DelvsList interface at /goform/aspForm.

  • CVE-2023-29911MedApr 21, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via the AddMacList interface at /goform/aspForm.

  • CVE-2023-29910MedApr 21, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via the UpdateMacClone interface at /goform/aspForm.

  • CVE-2023-29909MedApr 21, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via the AddWlanMacList interface at /goform/aspForm.

  • CVE-2023-29908MedApr 21, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via the SetMobileAPInfoById interface at /goform/aspForm.

  • CVE-2023-29907MedApr 21, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via the Edit_BasicSSID_5G interface at /goform/aspForm.

  • CVE-2023-29906MedApr 21, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via the Edit_BasicSSID interface at /goform/aspForm.

  • CVE-2023-29905MedApr 21, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via the UpdateSnat interface at /goform/aspForm.

  • CVE-2023-27810MedApr 7, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the ipqos_lanip_editlist interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.

  • CVE-2023-27808MedApr 7, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the DeltriggerList interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.

  • CVE-2023-27807MedApr 7, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the Delstlist interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.

  • CVE-2023-27806MedApr 7, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the ipqos_lanip_dellist interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.

  • CVE-2023-27805MedApr 7, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the EditSTList interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.

  • CVE-2023-27804MedApr 7, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the DelvsList interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.

  • CVE-2023-27803MedApr 7, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the EdittriggerList interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.

  • CVE-2023-27802MedApr 7, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the EditvsList parameter at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.

  • CVE-2023-27801MedApr 7, 2023
    risk 0.32cvss 4.9epss 0.01

    H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the DelDNSHnList interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.

  • CVE-2023-24613MedFeb 3, 2023
    risk 0.32cvss 4.9epss 0.01

    The user interface of Array Networks AG Series and vxAG through 9.4.0.470 could allow a remote attacker to use the gdb tool to overwrite the backend function call stack after accessing the system with administrator privileges. A successful exploit could leverage this…

  • CVE-2021-3434MedJun 28, 2022
    risk 0.32cvss 4.9epss 0.00

    Stack based buffer overflow in le_ecred_conn_req(). Zephyr versions >= v2.5.0 Stack-based Buffer Overflow (CWE-121). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-8w87-6rfp-cfrm