CWE-787
Out-of-bounds Write
Description
The product writes data past the end, or before the beginning, of the intended buffer.
Hierarchy (View 1000)
CVEs mapped to this weakness (14,531)
page 68 of 727| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-34609 | — | Cri | 0.64 | 9.8 | 0.01 | Jul 20, 2022 | H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the INTF parameter at /doping.asp. | |
| CVE-2022-34608 | — | Cri | 0.64 | 9.8 | 0.01 | Jul 20, 2022 | H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the ajaxmsg parameter at /AJAX/ajaxget. | |
| CVE-2022-34606 | — | Cri | 0.64 | 9.8 | 0.01 | Jul 20, 2022 | H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the EditvsList parameter at /dotrace.asp. | |
| CVE-2022-34605 | — | Cri | 0.64 | 9.8 | 0.01 | Jul 20, 2022 | H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the HOST parameter at /dotrace.asp. | |
| CVE-2022-34604 | — | Cri | 0.64 | 9.8 | 0.01 | Jul 20, 2022 | H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the INTF parameter at /dotrace.asp. | |
| CVE-2022-34603 | — | Cri | 0.64 | 9.8 | 0.01 | Jul 20, 2022 | H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the DelDNSHnList interface at /goform/aspForm. | |
| CVE-2022-34602 | — | Cri | 0.64 | 9.8 | 0.01 | Jul 20, 2022 | H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the ipqos_lanip_editlist interface at /goform/aspForm. | |
| CVE-2022-34601 | — | Cri | 0.64 | 9.8 | 0.01 | Jul 20, 2022 | H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the Delstlist interface at /goform/aspForm. | |
| CVE-2022-34600 | — | Cri | 0.64 | 9.8 | 0.01 | Jul 20, 2022 | H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the EditSTList interface at /goform/aspForm. | |
| CVE-2022-34599 | — | Cri | 0.64 | 9.8 | 0.01 | Jul 20, 2022 | H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the EdittriggerList interface at /goform/aspForm. | |
| CVE-2022-20229 | Cri | 0.64 | 9.8 | 0.03 | Jul 13, 2022 | In bta_hf_client_handle_cind_list_item of bta_hf_client_at.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product:… | ||
| CVE-2022-20222 | Cri | 0.64 | 9.8 | 0.01 | Jul 13, 2022 | In read_attr_value of gatt_db.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12… | ||
| CVE-2022-1737 | Cri | 0.64 | 9.8 | 0.01 | Jul 12, 2022 | Pyramid Solutions' affected products, the Developer and DLL kits for EtherNet/IP Adapter and EtherNet/IP Scanner, are vulnerable to an out-of-bounds write, which may allow an unauthorized attacker to send a specially crafted packet that may result in a denial-of-service… | ||
| CVE-2022-33047 | Cri | 0.64 | 9.8 | 0.01 | Jul 6, 2022 | OTFCC v0.10.4 was discovered to contain a heap buffer overflow after free via otfccbuild.c. | ||
| CVE-2022-21744 | Cri | 0.64 | 9.8 | 0.03 | Jul 6, 2022 | In Modem 2G RR, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution when decoding GPRS Packet Neighbour Cell Data (PNCD) improper neighbouring cell size with no additional execution privileges needed. User interaction… | ||
| CVE-2022-20083 | Cri | 0.64 | 9.8 | 0.03 | Jul 6, 2022 | In Modem 2G/3G CC, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution when decoding combined FACILITY with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID:… | ||
| CVE-2022-32386 | Cri | 0.64 | 9.8 | 0.10 | Jul 6, 2022 | Tenda AC23 v16.03.07.44 was discovered to contain a buffer overflow via fromAdvSetMacMtuWan. | ||
| CVE-2022-32385 | Cri | 0.64 | 9.8 | 0.02 | Jul 6, 2022 | Tenda AC23 v16.03.07.44 is vulnerable to Stack Overflow that will allow for the execution of arbitrary code (remote). | ||
| CVE-2022-32383 | Cri | 0.64 | 9.8 | 0.01 | Jul 6, 2022 | Tenda AC23 v16.03.07.44 was discovered to contain a stack overflow via the AdvSetMacMtuWan function. | ||
| CVE-2022-34913 | Cri | 0.64 | 9.8 | 0.03 | Jul 2, 2022 | md2roff 1.7 has a stack-based buffer overflow via a Markdown file containing a large number of consecutive characters to be processed. NOTE: the vendor's position is that the product is not intended for untrusted input |
- risk 0.64cvss 9.8epss 0.01
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the INTF parameter at /doping.asp.
- risk 0.64cvss 9.8epss 0.01
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the ajaxmsg parameter at /AJAX/ajaxget.
- risk 0.64cvss 9.8epss 0.01
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the EditvsList parameter at /dotrace.asp.
- risk 0.64cvss 9.8epss 0.01
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the HOST parameter at /dotrace.asp.
- risk 0.64cvss 9.8epss 0.01
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the INTF parameter at /dotrace.asp.
- risk 0.64cvss 9.8epss 0.01
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the DelDNSHnList interface at /goform/aspForm.
- risk 0.64cvss 9.8epss 0.01
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the ipqos_lanip_editlist interface at /goform/aspForm.
- risk 0.64cvss 9.8epss 0.01
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the Delstlist interface at /goform/aspForm.
- risk 0.64cvss 9.8epss 0.01
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the EditSTList interface at /goform/aspForm.
- risk 0.64cvss 9.8epss 0.01
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the EdittriggerList interface at /goform/aspForm.
- risk 0.64cvss 9.8epss 0.03
In bta_hf_client_handle_cind_list_item of bta_hf_client_at.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…
- risk 0.64cvss 9.8epss 0.01
In read_attr_value of gatt_db.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12…
- risk 0.64cvss 9.8epss 0.01
Pyramid Solutions' affected products, the Developer and DLL kits for EtherNet/IP Adapter and EtherNet/IP Scanner, are vulnerable to an out-of-bounds write, which may allow an unauthorized attacker to send a specially crafted packet that may result in a denial-of-service…
- risk 0.64cvss 9.8epss 0.01
OTFCC v0.10.4 was discovered to contain a heap buffer overflow after free via otfccbuild.c.
- risk 0.64cvss 9.8epss 0.03
In Modem 2G RR, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution when decoding GPRS Packet Neighbour Cell Data (PNCD) improper neighbouring cell size with no additional execution privileges needed. User interaction…
- risk 0.64cvss 9.8epss 0.03
In Modem 2G/3G CC, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution when decoding combined FACILITY with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID:…
- risk 0.64cvss 9.8epss 0.10
Tenda AC23 v16.03.07.44 was discovered to contain a buffer overflow via fromAdvSetMacMtuWan.
- risk 0.64cvss 9.8epss 0.02
Tenda AC23 v16.03.07.44 is vulnerable to Stack Overflow that will allow for the execution of arbitrary code (remote).
- risk 0.64cvss 9.8epss 0.01
Tenda AC23 v16.03.07.44 was discovered to contain a stack overflow via the AdvSetMacMtuWan function.
- risk 0.64cvss 9.8epss 0.03
md2roff 1.7 has a stack-based buffer overflow via a Markdown file containing a large number of consecutive characters to be processed. NOTE: the vendor's position is that the product is not intended for untrusted input