CWE-120— Buffer Copy without Checking Size (Classic Buffer Overflow)
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.— MITRE CWE catalog
4,446 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-120page 70 of 89
- CVE-2025-25678CRITICALCVSS 9.8EG 9.82025-02-20
Tenda i12 V1.0.0.10(3805) was discovered to contain a buffer overflow via the funcpara1 parameter in the formSetCfm function.
- CVE-2025-25723HIGHCVSS 8.4EG 8.42025-02-28
Buffer Overflow vulnerability in GPAC version 2.5 allows a local attacker to execute arbitrary code.
- CVE-2025-25898HIGHCVSS 7.5EG 7.52025-02-13
A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11 via the pskSecret parameter at /userRpm/WlanSecurityRpm.htm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.
- CVE-2025-25900MEDIUMCVSS 4.9EG 4.92025-02-13
A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11 via the username and password parameters at /userRpm/PPPoEv6CfgRpm.htm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.
- CVE-2025-26002CRITICALCVSS 9.8EG 9.82025-03-26
Telesquare TLR-2005KSH 1.1.4 is affected by an unauthorized stack overflow vulnerability when requesting the admin.cgi parameter with setSyncTimeHost.
- CVE-2025-26004CRITICALCVSS 9.8EG 9.82025-03-26
Telesquare TLR-2005KSH 1.1.4 is vulnerable to unauthorized stack buffer overflow vulnerability when requesting admin.cgi parameter with setDdns.
- CVE-2025-26005CRITICALCVSS 9.8EG 9.82025-03-26
Telesquare TLR-2005KSH 1.1.4 is vulnerable to unauthorized stack overflow vulnerability when requesting admin.cgi parameter with setNtp.
- CVE-2025-26006CRITICALCVSS 9.8EG 9.82025-03-26
Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability when requesting the admin.cgi parameter with setAutorest.
- CVE-2025-26007CRITICALCVSS 9.8EG 9.82025-03-26
Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability in the login interface when requesting systemtil.cgi.
- CVE-2025-26008CRITICALCVSS 9.8EG 9.82025-03-26
In Telesquare TLR-2005KSH 1.1.4, an unauthorized stack overflow vulnerability exists when requesting admin.cgi parameter with setSyncTimeHost.
- CVE-2025-26011CRITICALCVSS 9.8EG 9.82025-03-26
Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability when requesting the admin.cgi parameter with setUsernamePassword.
- CVE-2025-26240HIGHCVSS 8.4EG 8.42026-06-17
In JazzCore python-pdfkit 1.0.0, the from_string method enables the execution of JavaScript code within the context of the server application and the exfiltration of local files.
- CVE-2025-26434MEDIUMCVSS 5.5EG 5.52025-09-05
In libxml2, there is a possible out of bounds read due to a buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
- CVE-2025-27043HIGHCVSS 7.8EG 7.82025-07-08
Memory corruption while processing manipulated payload in video firmware.
- CVE-2025-27052HIGHCVSS 7.8EG 7.82025-07-08
Memory corruption while processing data packets in diag received from Unix clients.
- CVE-2025-27058HIGHCVSS 7.8EG 7.82025-07-08
Memory corruption while processing packet data with exceedingly large packet.
- CVE-2025-27071HIGHCVSS 7.3EG 7.32025-08-06
Memory corruption while processing specific files in Powerline Communication Firmware.
- CVE-2025-27072MEDIUMCVSS 5.5EG 5.52025-08-06
Information disclosure while processing a packet at EAVB BE side with invalid header length.
- CVE-2025-27830HIGHCVSS 7.8EG 7.82025-03-25
An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs during serialization of DollarBlend in a font, for base/write_t1.c and psi/zfapi.c.
- CVE-2025-27831CRITICALCVSS 9.8EG 9.82025-03-25
An issue was discovered in Artifex Ghostscript before 10.05.0. The DOCXWRITE TXTWRITE device has a text buffer overflow via long characters to devices/vector/doc_common.c.
- CVE-2025-27832CRITICALCVSS 9.8EG 9.82025-03-25
An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device has a Compression buffer overflow for contrib/japanese/gdevnpdl.c.
- CVE-2025-27833HIGHCVSS 7.8EG 7.82025-03-25
An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs for a long TTF font name to pdf/pdf_fmap.c.
- CVE-2025-27834HIGHCVSS 7.8EG 7.82025-03-25
An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs via an oversized Type 4 function in a PDF document to pdf/pdf_func.c.
- CVE-2025-27835HIGHCVSS 7.8EG 7.82025-03-25
An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs when converting glyphs to Unicode in psi/zbfont.c.
- CVE-2025-27836CRITICALCVSS 9.8EG 9.82025-03-25
An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/japanese/gdev10v.c.
- CVE-2025-28018HIGHCVSS 7.3EG 7.32025-04-23
TOTOLINK A800R V4.1.2cu.5137_B20200730 was found to contain a buffer overflow vulnerability in downloadFile.cgi through the v14 parameter.
- CVE-2025-28019HIGHCVSS 7.3EG 7.32025-04-23
TOTOLINK A800R V4.1.2cu.5137_B20200730 was found to contain a buffer overflow vulnerability in the downloadFile.cgi component
- CVE-2025-28020HIGHCVSS 7.3EG 7.32025-04-23
TOTOLINK A800R V4.1.2cu.5137_B20200730 was found to contain a buffer overflow vulnerability in downloadFile.cgi through the v25 parameter.
- CVE-2025-28021HIGHCVSS 7.3EG 7.32025-04-23
TOTOLINK A810R V4.1.2cu.5182_B20201026 was found to contain a buffer overflow vulnerability in the downloadFile.cgi through the v14 and v3 parameters
- CVE-2025-28022HIGHCVSS 7.3EG 7.32025-04-23
TOTOLINK A810R V4.1.2cu.5182_B20201026 was found to contain a buffer overflow vulnerability in downloadFile.cgi through the v25 parameter.
- CVE-2025-28024CRITICALCVSS 9.8EG 9.82025-04-22
TOTOLINK A810R V4.1.2cu.5182_B20201026 was found to contain a buffer overflow vulnerability in the cstecgi.cgi
- CVE-2025-28025HIGHCVSS 7.3EG 7.32025-04-23
TOTOLINK A830R V4.1.2cu.5182_B20201102, A950RG V4.1.2cu.5161_B20200903, A3000RU V5.9c.5185_B20201128, and A3100R V4.1.2cu.5247_B20211129 were found to contain a buffer overflow vulnerability in downloadFile.cgi through the v14 parameter.
- CVE-2025-28028HIGHCVSS 7.3EG 7.32025-04-23
TOTOLINK A830R V4.1.2cu.5182_B20201102, A950RG V4.1.2cu.5161_B20200903, A3000RU V5.9c.5185_B20201128, and A3100R V4.1.2cu.5247_B20211129 were found to contain a buffer overflow vulnerability in downloadFile.cgi through the v5 parameter.
- CVE-2025-28162MEDIUMCVSS 5.5EG 5.52026-01-27
Buffer Overflow vulnerability in libpng 1.6.43-1.6.46 allows a local attacker to cause a denial of service via the pngimage with AddressSanitizer (ASan), the program leaks memory in various locations, eventually leading to high memory usag…
- CVE-2025-28164MEDIUMCVSS 5.5EG 5.52026-01-27
Buffer Overflow vulnerability in libpng 1.6.43-1.6.46 allows a local attacker to cause a denial of service via png_create_read_struct() function.
- CVE-2025-28220HIGHCVSS 7.5EG 7.52025-03-28
Tenda W6_S v1.0.0.4_510 has a Buffer Overflow vulnerability in the setcfm function, which allows remote attackers to cause web server crash via parameter funcpara1 passed to the binary through a POST request.
- CVE-2025-28221HIGHCVSS 7.5EG 7.52025-03-28
Tenda W6_S v1.0.0.4_510 has a Buffer Overflow vulnerability in the set_local_time function, which allows remote attackers to cause web server crash via parameter time passed to the binary through a POST request.
- CVE-2025-28361HIGHCVSS 7.5EG 7.52025-03-26
Unauthorized stack overflow vulnerability in Telesquare TLR-2005KSH v.1.1.4 allows a remote attacker to obtain sensitive information via the systemutil.cgi component.
- CVE-2025-28395HIGHCVSS 7.1EG 7.12025-04-01
D-LINK DI-8100 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_road_asp function via the host_ip parameter.
- CVE-2025-28398HIGHCVSS 7.1EG 7.12025-04-01
D-LINK DI-8100 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_net_asp function via the remot_ip parameter.
- CVE-2025-2851HIGHCVSS 8.0EG 8.02025-04-26
A vulnerability classified as critical has been found in GL.iNet GL-A1300 Slate Plus, GL-AR300M16 Shadow, GL-AR300M Shadow, GL-AR750 Creta, GL-AR750S-EXT Slate, GL-AX1800 Flint, GL-AXT1800 Slate AX, GL-B1300 Convexa-B, GL-B3000 Marble, GL-…
- CVE-2025-29032MEDIUMCVSS 5.9EG 5.92025-03-14
Tenda AC9 v15.03.05.19(6318) was discovered to contain a buffer overflow via the formWifiWpsOOB function.
- CVE-2025-29044CRITICALCVSS 9.8EG 9.82025-04-17
Buffer Overflow vulnerability in Netgear- R61 router V1.0.1.28 allows a remote attacker to execute arbitrary code via the QUERY_STRING key value
- CVE-2025-29045CRITICALCVSS 9.8EG 9.82025-04-17
Buffer Overflow vulnerability in ALFA_CAMPRO-co-2.29 allows a remote attacker to execute arbitrary code via the newap_text_0 key value
- CVE-2025-29046CRITICALCVSS 9.8EG 9.82025-04-17
Buffer Overflow vulnerability inALFA WiFi CampPro router ALFA_CAMPRO-co-2.29 allows a remote attacker to execute arbitrary code via the GAPSMinute3 key value
- CVE-2025-29047CRITICALCVSS 9.8EG 9.82025-04-17
Buffer Overflow vulnerability inALFA WiFi CampPro router ALFA_CAMPRO-co-2.29 allows a remote attacker to execute arbitrary code via the hiddenIndex in the function StorageEditUser
- CVE-2025-29137CRITICALCVSS 9.8EG 9.82025-03-19
Tenda AC7 V1.0 V15.03.06.44 found a buffer overflow caused by the timeZone parameter in the form_fast_setting_wifi_set function, which can cause RCE.
- CVE-2025-29329CRITICALCVSS 9.8EG 9.82026-01-12
Buffer Overflow in the ippprint (Internet Printing Protocol) service in Sagemcom F@st 3686 MAGYAR_4.121.0 allows remote attacker to execute arbitrary code by sending a crafted HTTP request.
- CVE-2025-29338MEDIUMCVSS 5.6EG 5.62026-05-13
NXP moal.ko Wi-Fi driver 5.1.7.10 FW version from v17.92.1.p149.43 To v17.92.1.p149.157 was discovered to contain a buffer overflow via the mod_para parameter in the woal_init_module_param function.
- CVE-2025-29358HIGHCVSS 7.5EG 7.52025-03-13
Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the firewallEn parameter at /goform/SetFirewallCfg. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.
Map vulnerabilities like CWE-120 to your infrastructure
EchelonGraph correlates every CVE — across CWE-120 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →