VYPR

CWE-787

Out-of-bounds Write

BaseDraftLikelihood: High

Description

The product writes data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

CVEs mapped to this weakness (14,531)

page 96 of 727
  • CVE-2019-3975CriSep 10, 2019
    risk 0.64cvss 9.8epss 0.05

    Stack-based buffer overflow in Advantech WebAccess/SCADA 8.4.1 allows a remote, unauthenticated attacker to execute arbitrary code via a crafted IOCTL 70603 RPC message.

  • CVE-2019-16139CriSep 9, 2019
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in the compact_arena crate before 0.4.0 for Rust. Generativity is mishandled, leading to an out-of-bounds write or read.

  • CVE-2019-16093CriSep 8, 2019
    risk 0.64cvss 9.8epss 0.02

    Symonics libmysofa 0.7 has an invalid write in readOHDRHeaderMessageDataLayout in hdf/dataobject.c.

  • CVE-2019-10892CriSep 6, 2019
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in D-Link DIR-806 devices. There is a stack-based buffer overflow in function hnap_main at /htdocs/cgibin. The function will call sprintf without checking the length of strings in parameters given by HTTP header and can be controlled by users. And it…

  • CVE-2019-15938CriSep 5, 2019
    risk 0.64cvss 9.8epss 0.02

    Pengutronix barebox through 2019.08.1 has a remote buffer overflow in nfs_readlink_req in fs/nfs.c because a length field is directly used for a memcpy.

  • CVE-2019-15937CriSep 5, 2019
    risk 0.64cvss 9.8epss 0.02

    Pengutronix barebox through 2019.08.1 has a remote buffer overflow in nfs_readlink_reply in net/nfs.c because a length field is directly used for a memcpy.

  • CVE-2019-5608CriAug 30, 2019
    risk 0.64cvss 9.8epss 0.02

    In FreeBSD 12.0-STABLE before r350648, 12.0-RELEASE before 12.0-RELEASE-p9, 11.3-STABLE before r350650, 11.3-RELEASE before 11.3-RELEASE-p2, and 11.2-RELEASE before 11.2-RELEASE-p13, the ICMPv6 input path incorrectly handles cases where an MLDv2 listener query packet is…

  • CVE-2019-13486CriAug 27, 2019
    risk 0.64cvss 9.8epss 0.02

    In Xymon through 4.3.28, a stack-based buffer overflow exists in the status-log viewer component because of expansion in svcstatus.c.

  • CVE-2019-13485CriAug 27, 2019
    risk 0.64cvss 9.8epss 0.02

    In Xymon through 4.3.28, a stack-based buffer overflow vulnerability exists in the history viewer component via a long hostname or service parameter to history.c.

  • CVE-2019-13455CriAug 27, 2019
    risk 0.64cvss 9.8epss 0.02

    In Xymon through 4.3.28, a stack-based buffer overflow vulnerability exists in the alert acknowledgment CGI tool because of expansion in acknowledge.c.

  • CVE-2019-13273CriAug 27, 2019
    risk 0.64cvss 9.8epss 0.01

    In Xymon through 4.3.28, a buffer overflow vulnerability exists in the csvinfo CGI script. The overflow may be exploited by sending a crafted GET request that triggers an sprintf of the srcdb parameter.

  • CVE-2019-9569CriAug 26, 2019
    risk 0.64cvss 9.8epss 0.04

    Buffer Overflow in dactetra in Delta Controls enteliBUS Manager V3.40_B-571848 allows remote unauthenticated users to execute arbitrary code and possibly cause a denial of service via unspecified vectors.

  • CVE-2019-8001CriAug 26, 2019
    risk 0.64cvss 9.8epss 0.06

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2019-7998CriAug 26, 2019
    risk 0.64cvss 9.8epss 0.06

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2019-7997CriAug 26, 2019
    risk 0.64cvss 9.8epss 0.06

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2019-7993CriAug 26, 2019
    risk 0.64cvss 9.8epss 0.08

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2019-7992CriAug 26, 2019
    risk 0.64cvss 9.8epss 0.05

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2019-7990CriAug 26, 2019
    risk 0.64cvss 9.8epss 0.08

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2019-15543CriAug 26, 2019
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in the slice-deque crate before 0.2.0 for Rust. There is memory corruption in certain allocation cases.

  • CVE-2019-15554CriAug 26, 2019
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in the smallvec crate before 0.6.10 for Rust. There is memory corruption for certain grow attempts with less than the current capacity.