CWE-120— Buffer Copy without Checking Size (Classic Buffer Overflow)
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.— MITRE CWE catalog
4,326 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-120page 55 of 87
- CVE-2024-32324HIGHCVSS 7.8EG 7.82024-04-25
Buffer Overflow vulnerability in Shenzhen Libituo Technology Co., Ltd LBT-T300-T400 v.3.2 allows a local attacker to execute arbitrary code via the vpn_client_ip variable of the config_vpn_pptp function in rc program.
- CVE-2024-32389LOWCVSS 3.5EG 3.52026-07-16
Buffer Overflow vulnerability in Kerlink Kerlink Wirnet iStation 868 KerOS v.4.3.3_20200803132042 allows a remote attacker to obtain sensitive information via the update URLs component.
- CVE-2024-32664MEDIUMCVSS 5.3EG 5.32024-05-07
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.5 and 6.0.19, specially crafted traffic or datasets can cause a limited buffer overflow. This vulnerability …
- CVE-2024-32763HIGHCVSS 8.8EG 8.82024-09-06
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated users to execute code via a network. We have already …
- CVE-2024-32907HIGHCVSS 7.8EG 8.42024-06-13
In memcall_add of memlog.c, there is a possible buffer overflow due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitat…
- CVE-2024-33030MEDIUMCVSS 6.7EG 6.72024-11-04
Memory corruption while parsing IPC frequency table parameters for LPLH that has size greater than expected size.
- CVE-2024-33042HIGHCVSS 7.8EG 7.82024-09-02
Memory corruption when Alternative Frequency offset value is set to 255.
- CVE-2024-33052HIGHCVSS 7.8EG 7.82024-09-02
Memory corruption when user provides data for FM HCI command control operations.
- CVE-2024-33054HIGHCVSS 7.8EG 7.82024-09-02
Memory corruption during the handshake between the Primary Virtual Machine and Trusted Virtual Machine.
- CVE-2024-33180CRITICALCVSS 9.8EG 9.82024-07-16
Tenda AC18 V15.03.3.10_EN was discovered to contain a stack-based buffer overflow vulnerability via the deviceId parameter at ip/goform/saveParentControlInfo.
- CVE-2024-33214HIGHCVSS 7.5EG 7.52024-04-23
Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the entrys parameter in ip/goform/RouteStatic.
- CVE-2024-33278CRITICALCVSS 9.8EG 9.82024-06-24
Buffer Overflow vulnerability in ASUS router RT-AX88U with firmware versions v3.0.0.4.388_24198 allows a remote attacker to execute arbitrary code via the connection_state_machine due to improper length validation for the cookie field.
- CVE-2024-33365HIGHCVSS 7.5EG 7.52024-07-29
Buffer Overflow vulnerability in Tenda AC10 v4 US_AC10V4.0si_V16.03.10.20_cn allows a remote attacker to execute arbitrary code via the Virtual_Data_Check function in the bin/httpd component.
- CVE-2024-33453HIGHCVSS 8.1EG 8.12024-10-17
Buffer Overflow vulnerability in esp-idf v.5.1 allows a remote attacker to obtain sensitive information via the externalId component.
- CVE-2024-33454MEDIUMCVSS 6.5EG 6.52024-05-14
Buffer Overflow vulnerability in esp-idf v.5.1 allows a remote attacker to execute arbitrary code via a crafted script to the Bluetooth stack component.
- CVE-2024-33771MEDIUMCVSS 6.5EG 6.52024-05-14
A buffer overflow vulnerability in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 via goform/formWPS, allows remote authenticated users to trigger a denial of service (DoS) through the parameter "webpage."
- CVE-2024-33773MEDIUMCVSS 6.5EG 6.52024-05-14
A buffer overflow vulnerability in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 via formWlanGuestSetup allows remote authenticated users to trigger a denial of service (DoS) through the parameter "webpage."
- CVE-2024-33780MEDIUMCVSS 6.5EG 6.52024-05-07
MP-SPDZ v0.3.8 was discovered to contain a segmentation violation via the function osuCrypto::copyOut at /Tools/SilentPprf.cpp. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted message.
- CVE-2024-33783MEDIUMCVSS 6.5EG 6.52024-05-07
MP-SPDZ v0.3.8 was discovered to contain a segmentation violation via the function osuCrypto::SilentMultiPprfReceiver::expand in /Tools/SilentPprf.cpp. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted me…
- CVE-2024-33809MEDIUMCVSS 6.5EG 6.52024-05-24
PingCAP TiDB v7.5.1 was discovered to contain a buffer overflow vulnerability, which could lead to database crashes and denial of service attacks.
- CVE-2024-33820HIGHCVSS 7.5EG 7.52024-05-01
Totolink AC1200 Wireless Dual Band Gigabit Router A3002R_V4 Firmware V4.0.0-B20230531.1404 is vulnerable to Buffer Overflow via the formWlEncrypt function of the boa server. Specifically, they exploit the length of the wlan_ssid field trig…
- CVE-2024-33874CRITICALCVSS 9.8EG 9.82024-05-14
HDF5 Library through 1.14.3 has a heap buffer overflow in H5O__mtime_new_encode in H5Omtime.c.
- CVE-2024-33875MEDIUMCVSS 5.7EG 5.72024-05-14
HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5O__layout_encode in H5Olayout.c, resulting in the corruption of the instruction pointer.
- CVE-2024-33876MEDIUMCVSS 5.7EG 5.72024-05-14
HDF5 Library through 1.14.3 has a heap buffer overflow in H5S__point_deserialize in H5Spoint.c.
- CVE-2024-34057HIGHCVSS 7.5EG 8.22024-09-18
Triangle Microworks TMW IEC 61850 Client source code libraries before 12.2.0 lack a buffer size check when processing received messages. The resulting buffer overflow can cause a crash, resulting in a denial of service.
- CVE-2024-34196HIGHCVSS 8.8EG 8.82024-05-14
Totolink AC1200 Wireless Dual Band Gigabit Router A3002RU_V3 Firmware V3.0.0-B20230809.1615 is vulnerable to Buffer Overflow. The "boa" program allows attackers to modify the value of the "vwlan_idx" field via "formMultiAP". This can lead …
- CVE-2024-34198CRITICALCVSS 9.8EG 9.82024-08-28
TOTOLINK AC1200 Wireless Router A3002RU V2.1.1-B20230720.1011 is vulnerable to Buffer Overflow. The formWlEncrypt CGI handler in the boa program fails to limit the length of the wlan_ssid field from user input. This allows attackers to cra…
- CVE-2024-34244HIGHCVSS 7.5EG 7.52024-05-08
libmodbus v3.1.10 is vulnerable to Buffer Overflow via the modbus_write_bits function. This issue can be triggered when the function is fed with specially crafted input, which leads to out-of-bounds read and can potentially cause a crash o…
- CVE-2024-34252CRITICALCVSS 7.5EG 9.82024-05-06
wasm3 v0.5.0 was discovered to contain a global buffer overflow which leads to segmentation fault via the function "PreserveRegisterIfOccupied" in wasm3/source/m3_compile.c.
- CVE-2024-34727HIGHCVSS 7.5EG 7.52024-08-15
In sdpu_compare_uuid_with_attr of sdp_utils.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not …
- CVE-2024-34905HIGHCVSS 7.5EG 7.52024-05-16
FlyFish v3.0.0 was discovered to contain a buffer overflow via the password parameter on the login page. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
- CVE-2024-34945CRITICALCVSS 9.8EG 9.82024-05-14
Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the PPW parameter at ip/goform/WizardHandle.
- CVE-2024-3506MEDIUMCVSS 6.7EG 6.72024-10-08
A possible buffer overflow in selected cameras' drivers from XProtect Device Pack can allow an attacker with access to internal network to execute commands on Recording Server under strict conditions.
- CVE-2024-35099CRITICALCVSS 9.8EG 9.82024-05-14
TOTOLINK LR350 V9.3.5u.6698_B20230810 was discovered to contain a stack overflow via the password parameter in the function loginAuth.
- CVE-2024-35106MEDIUMCVSS 4.6EG 5.92025-02-07
NEXTU FLETA AX1500 WIFI6 v1.0.3 was discovered to contain a buffer overflow at /boafrm/formIpQoS. This vulnerability allows attackers to cause a Denial of Service (DoS) or potentially arbitrary code execution via a crafted POST request.
- CVE-2024-35366CRITICALCVSS 9.1EG 9.12024-11-29
FFmpeg n6.1.1 is Integer Overflow. The vulnerability exists in the parse_options function of sbgdec.c within the libavformat module. When parsing certain options, the software does not adequately validate the input. This allows for negativ…
- CVE-2024-35398CRITICALCVSS 9.8EG 9.82024-05-28
TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a stack overflow via the desc parameter in the function setMacFilterRules.
- CVE-2024-35400MEDIUMCVSS 5.3EG 5.32024-05-28
TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a stack overflow via the desc parameter in the function SetPortForwardRules
- CVE-2024-35410MEDIUMCVSS 6.2EG 6.22024-11-08
wac commit 385e1 was discovered to contain a heap overflow via the interpret function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file.
- CVE-2024-35418MEDIUMCVSS 6.2EG 6.22024-11-08
wac commit 385e1 was discovered to contain a heap overflow via the setup_call function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file.
- CVE-2024-35419MEDIUMCVSS 5.5EG 5.52024-11-08
wac commit 385e1 was discovered to contain a heap overflow via the load_module function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file.
- CVE-2024-35420MEDIUMCVSS 6.2EG 6.22024-11-08
wac commit 385e1 was discovered to contain a heap overflow.
- CVE-2024-35422HIGHCVSS 7.8EG 7.82024-11-08
vmir e8117 was discovered to contain a heap buffer overflow via the wasm_call function at /src/vmir_wasm_parser.c.
- CVE-2024-35426CRITICALCVSS 9.8EG 9.82024-11-08
vmir e8117 was discovered to contain a stack overflow via the init_local_vars function at /src/vmir_wasm_parser.c.
- CVE-2024-35571CRITICALCVSS 9.8EG 9.82024-05-20
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv.
- CVE-2024-35823MEDIUMCVSS 5.3EG 5.32024-05-17
In the Linux kernel, the following vulnerability has been resolved: vt: fix unicode buffer corruption when deleting characters This is the same issue that was fixed for the VGA text buffer in commit 39cdb68c64d8 ("vt: fix memory overlapp…
- CVE-2024-36272CRITICALCVSS 9.1EG 9.12025-01-14
A buffer overflow vulnerability exists in the usbip.cgi set_info() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to stack-based buffer overflow. An attacker can make an authenticated HTTP req…
- CVE-2024-36290CRITICALCVSS 10.0EG 10.02025-01-14
A buffer overflow vulnerability exists in the login.cgi Goto_chidx() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to stack-based buffer overflow. An attacker can make an unauthenticated HTTP…
- CVE-2024-36650HIGHCVSS 7.5EG 7.52024-06-11
TOTOLINK AC1200 Wireless Dual Band Gigabit Router firmware A3100R V4.1.2cu.5247_B20211129, in the cgi function `setNoticeCfg` of the file `/lib/cste_modules/system.so`, the length of the user input string `NoticeUrl` is not checked. This c…
- CVE-2024-36760HIGHCVSS 7.5EG 7.52024-06-13
A stack overflow vulnerability was found in version 1.18.0 of rhai. The flaw position is: (/ SRC/rhai/SRC/eval/STMT. Rs in rhai: : eval: : STMT: : _ $LT $impl $u20 $rhai.. engine.. Engine$GT$::eval_stmt::h3f1d68ce37fc6e96). Due to the stac…
Map vulnerabilities like CWE-120 to your infrastructure
EchelonGraph correlates every CVE — across CWE-120 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →