VYPR

CWE-787

Out-of-bounds Write

BaseDraftLikelihood: High

Description

The product writes data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

CVEs mapped to this weakness (14,531)

page 72 of 727
  • CVE-2022-23901CriMar 29, 2022
    risk 0.64cvss 9.8epss 0.02

    A stack overflow re2c 2.2 exists due to infinite recursion issues in src/dfa/dead_rules.cc.

  • CVE-2022-26278CriMar 28, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC9 v15.03.2.21_cn was discovered to contain a stack overflow via the time parameter in the PowerSaveSet function.

  • CVE-2021-38278CriMar 23, 2022
    risk 0.64cvss 9.8epss 0.01

    Tenda AC10-1200 v15.03.06.23_EN was discovered to contain a buffer overflow via the urls parameter in the saveParentControlInfo function.

  • CVE-2021-41736CriMar 22, 2022
    risk 0.64cvss 9.8epss 0.01

    Faust v2.35.0 was discovered to contain a heap-buffer overflow in the function realPropagate() at propagate.cpp.

  • CVE-2022-24126CriMar 20, 2022
    risk 0.64cvss 9.8epss 0.05

    A buffer overflow in the NRSessionSearchResult parser in Bandai Namco FromSoftware Dark Souls III through 2022-03-19 allows remote attackers to execute arbitrary code via matchmaking servers, a different vulnerability than CVE-2021-34170.

  • CVE-2022-25461CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the startip parameter in the SetPptpServerCfg function.

  • CVE-2022-25460CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the endip parameter in the SetPptpServerCfg function.

  • CVE-2022-25459CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the S1 parameter in the SetSysTimeCfg function.

  • CVE-2022-25458CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the cmdinput parameter in the exeCommand function.

  • CVE-2022-25457CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the ntpserver parameter in the SetSysTimeCfg function.

  • CVE-2022-25456CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the security_5g parameter in the WifiBasicSet function.

  • CVE-2022-25455CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in the SetIpMacBind function.

  • CVE-2022-25454CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the loginpwd parameter in the SetFirewallCfg function.

  • CVE-2022-25453CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the time parameter in the saveParentControlInfo function.

  • CVE-2022-25452CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the URLs parameter in the saveParentControlInfo function.

  • CVE-2022-25451CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 V15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in the setstaticroutecfg function.

  • CVE-2022-25449CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the deviceId parameter in the saveParentControlInfo function.

  • CVE-2022-25448CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the day parameter in the openSchedWifi function.

  • CVE-2022-25447CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the schedendtime parameter in the openSchedWifi function.

  • CVE-2022-25446CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the schedstarttime parameter in the openSchedWifi function.