CWE-120— Buffer Copy without Checking Size (Classic Buffer Overflow)
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.— MITRE CWE catalog
4,326 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-120page 41 of 87
- CVE-2022-49058HIGHCVSS 7.8EG 7.82025-02-26
In the Linux kernel, the following vulnerability has been resolved: cifs: potential buffer overflow in handling symlinks Smatch printed a warning: arch/x86/crypto/poly1305_glue.c:198 poly1305_update_arch() error: __memcpy() 'dctx->buf'…
- CVE-2022-4969MEDIUMCVSS 5.3EG 5.32024-05-27
A vulnerability, which was classified as critical, has been found in bwoodsend rockhopper up to 0.1.2. Affected by this issue is the function count_rows of the file rockhopper/src/ragged_array.c of the component Binary Parser. The manipula…
- CVE-2022-49754HIGHCVSS 7.8EG 7.82025-03-27
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix a buffer overflow in mgmt_mesh_add() Smatch Warning: net/bluetooth/mgmt_util.c:375 mgmt_mesh_add() error: __memcpy() 'mesh_tx->param' too small (48 vs 50)…
- CVE-2022-50687MEDIUMCVSS 5.5EG 6.22025-12-22
Cobian Backup 11 Gravity 11.2.0.582 contains a denial of service vulnerability in the FTP password input field that allows attackers to crash the application. Attackers can generate a specially crafted 800-byte buffer and paste it into the…
- CVE-2022-50689MEDIUMCVSS 6.2EG 6.22025-12-22
Cobian Reflector 0.9.93 RC1 contains a denial of service vulnerability that allows attackers to crash the application by overflowing the password input field. Attackers can paste a large 8000-byte buffer into the password field to trigger …
- CVE-2022-50922CRITICALCVSS 9.8EG 9.82026-01-13
Audio Conversion Wizard v2.01 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting memory with a specially crafted registration code. Attackers can generate a payload that overwrites the a…
- CVE-2023-0612HIGHCVSS 7.5EG 7.52023-02-01
A vulnerability, which was classified as critical, was found in TRENDnet TEW-811DRU 1.0.10.0. Affected is an unknown function of the file /wireless/basic.asp of the component httpd. The manipulation leads to buffer overflow. It is possible…
- CVE-2023-0617HIGHCVSS 7.5EG 7.52023-02-01
A vulnerability was found in TRENDNet TEW-811DRU 1.0.10.0. It has been classified as critical. This affects an unknown part of the file /wireless/guestnetwork.asp of the component httpd. The manipulation leads to buffer overflow. It is pos…
- CVE-2023-0687MEDIUMCVSS 4.6EG 9.82023-02-06
A vulnerability was found in GNU C Library 2.38. It has been declared as critical. This vulnerability affects the function __monstartup of the file gmon.c of the component Call Graph Monitor. The manipulation leads to buffer overflow. It i…
- CVE-2023-0970HIGHCVSS 7.1EG 7.12023-06-21
Multiple buffer overflow vulnerabilities in SiLabs Z/IP Gateway SDK version 7.18.01 and earlier allow an attacker with invasive physical access to a Z-Wave controller device to overwrite global memory and potentially execute arbitrary code.
- CVE-2023-0977MEDIUMCVSS 6.7EG 6.72023-04-03
A heap-based overflow vulnerability in Trellix Agent (Windows and Linux) version 5.7.8 and earlier, allows a remote user to alter the page heap in the macmnsvc process memory block resulting in the service becoming unavailable.
- CVE-2023-0996HIGHCVSS 7.8EG 7.82023-02-24
There is a vulnerability in the strided image data parsing code in the emscripten wrapper for libheif. An attacker could exploit this through a crafted image file to cause a buffer overflow in linear memory during a memcpy call.
- CVE-2023-1161MEDIUMCVSS 6.3EG 6.52023-03-06
ISO 15765 and ISO 10681 dissector crash in Wireshark 4.0.0 to 4.0.3 and 3.6.0 to 3.6.11 allows denial of service via packet injection or crafted capture file
- CVE-2023-1190MEDIUMCVSS 4.8EG 7.82023-03-06
A vulnerability was found in xiaozhuai imageinfo up to 3.0.3. It has been rated as problematic. Affected by this issue is some unknown functionality of the file imageinfo.hpp. The manipulation leads to buffer overflow. Local access is requ…
- CVE-2023-1329CRITICALCVSS 9.8EG 9.82023-06-14
A potential security vulnerability has been identified for certain HP multifunction printers (MFPs). The vulnerability may lead to Buffer Overflow and/or Remote Code Execution when running HP Workpath solutions on potentially affected prod…
- CVE-2023-1424CRITICALCVSS 10.0EG 10.02023-05-24
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU modules and MELSEC iQ-R Series CPU modules allows a remote unauthenticated attacker to cause a d…
- CVE-2023-1452MEDIUMCVSS 5.3EG 7.82023-03-17
A vulnerability was found in GPAC 2.3-DEV-rev35-gbbca86917-master. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file filters/load_text.c. The manipulation leads to buffer overflow. Loc…
- CVE-2023-1560LOWCVSS 2.8EG 5.52023-03-22
A vulnerability, which was classified as problematic, has been found in TinyTIFF 3.0.0.0. This issue affects some unknown processing of the file tinytiffreader.c of the component File Handler. The manipulation leads to buffer overflow. Att…
- CVE-2023-20007MEDIUMCVSS 4.7EG 7.22023-01-20
A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code or cause the web-based mana…
- CVE-2023-20024HIGHCVSS 8.6EG 8.62023-05-18
Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with root privi…
- CVE-2023-20032CRITICALCVSS 9.8EG 9.82023-03-01
On Feb 15, 2023, the following vulnerability in the ClamAV scanning library was disclosed: A vulnerability in the HFS+ partition file parser of ClamAV versions 1.0.0 and earlier, 0.105.1 and earlier, and 0.103.7 and earlier could allo…
- CVE-2023-20156HIGHCVSS 8.6EG 8.62023-05-18
Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with root privi…
- CVE-2023-20157HIGHCVSS 8.6EG 8.62023-05-18
Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with root privi…
- CVE-2023-20158HIGHCVSS 8.6EG 8.62023-05-18
Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with root privi…
- CVE-2023-20159HIGHCVSS 8.6EG 8.62023-05-18
Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with root privi…
- CVE-2023-20160HIGHCVSS 8.6EG 8.62023-05-18
Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with root privi…
- CVE-2023-20161HIGHCVSS 8.6EG 8.62023-05-18
Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with root privi…
- CVE-2023-20162HIGHCVSS 8.6EG 8.62023-05-18
Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with root privi…
- CVE-2023-20168HIGHCVSS 7.1EG 7.12023-08-23
A vulnerability in TACACS+ and RADIUS remote authentication for Cisco NX-OS Software could allow an unauthenticated, local attacker to cause an affected device to unexpectedly reload. This vulnerability is due to incorrect input validation…
- CVE-2023-20189HIGHCVSS 8.6EG 8.62023-05-18
Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with root privi…
- CVE-2023-20624MEDIUMCVSS 6.7EG 6.72023-03-07
In vow, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS0762…
- CVE-2023-21135HIGHCVSS 7.8EG 7.82023-06-15
In onCreate of NotificationAccessSettings.java, there is a possible failure to persist notifications settings due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed…
- CVE-2023-21136MEDIUMCVSS 5.5EG 5.52023-06-15
In multiple functions of JobStore.java, there is a possible way to cause a crash on startup due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is no…
- CVE-2023-21143MEDIUMCVSS 5.5EG 5.52023-06-15
In multiple functions of multiple files, there is a possible way to make the device unusable due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is n…
- CVE-2023-21243MEDIUMCVSS 5.5EG 5.52023-07-13
In validateForCommonR1andR2 of PasspointConfiguration.java, there is a possible way to inflate the size of a config file with no limits due to a buffer overflow. This could lead to local denial of service with no additional execution privi…
- CVE-2023-21406HIGHCVSS 7.1EG 7.12023-07-25
Ariel Harush and Roy Hodir from OTORIO have found a flaw in the AXIS A1001 when communicating over OSDP. A heap-based buffer overflow was found in the pacsiod process which is handling the OSDP communication allowing to write outside of th…
- CVE-2023-21494MEDIUMCVSS 5.6EG 5.62023-05-04
Potential buffer overflow vulnerability in auth api in mm_Authentication.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory access.
- CVE-2023-21503MEDIUMCVSS 5.6EG 5.62023-05-04
Potential buffer overflow vulnerability in mm_LteInterRatManagement.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory access.
- CVE-2023-21504MEDIUMCVSS 5.6EG 5.62023-05-04
Potential buffer overflow vulnerability in mm_Plmncoordination.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory access.
- CVE-2023-21517HIGHCVSS 8.8EG 8.82023-06-28
Heap out-of-bound write vulnerability in Exynos baseband prior to SMR Jun-2023 Release 1 allows remote attacker to execute arbitrary code.
- CVE-2023-21635MEDIUMCVSS 6.7EG 6.72023-07-04
Memory Corruption in Data Network Stack & Connectivity when sim gets detected on telephony.
- CVE-2023-21639MEDIUMCVSS 6.7EG 6.72023-07-04
Memory corruption in Audio while processing sva_model_serializer using memory size passed by HIDL client.
- CVE-2023-21640MEDIUMCVSS 6.7EG 6.72023-07-04
Memory corruption in Linux when the file upload API is called with parameters having large buffer.
- CVE-2023-21649MEDIUMCVSS 6.7EG 6.72023-08-08
Memory corruption in WLAN while running doDriverCmd for an unspecific command.
- CVE-2023-21662HIGHCVSS 7.8EG 7.82023-09-05
Memory corruption in Core Platform while printing the response buffer in log.
- CVE-2023-21664HIGHCVSS 7.8EG 7.82023-09-05
Memory Corruption in Core Platform while printing the response buffer in log.
- CVE-2023-22384MEDIUMCVSS 6.7EG 6.72023-10-03
Memory Corruption in VR Service while sending data using Fast Message Queue (FMQ).
- CVE-2023-22386HIGHCVSS 7.8EG 7.82023-07-04
Memory Corruption in WLAN HOST while processing WLAN FW request to allocate memory.
- CVE-2023-22399HIGHCVSS 7.5EG 7.52023-01-13
When sFlow is enabled and it monitors a packet forwarded via ECMP, a buffer management vulnerability in the dcpfe process of Juniper Networks Junos OS on QFX10K Series systems allows an attacker to cause the Packet Forwarding Engine (PFE) …
- CVE-2023-2241MEDIUMCVSS 5.3EG 5.32023-04-22
A vulnerability, which was classified as critical, was found in PoDoFo 0.10.0. Affected is the function readXRefStreamEntry of the file PdfXRefStreamParserObject.cpp. The manipulation leads to heap-based buffer overflow. An attack has to b…
Map vulnerabilities like CWE-120 to your infrastructure
EchelonGraph correlates every CVE — across CWE-120 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →