CWE-119
14,074 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CVEs (14,074)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Foxitsoftware 1Foxit Studio Photo Jun 17, 2026 Feb 9, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a m...Show more |
1Siemens 2Jt2go Teamcenter VisualizationJun 17, 2026 Feb 9, 2021 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (All versions < V13.1.0.1). Affected applications lack proper validation of user-supplied data when parsing of PCT files....Show more |
1Siemens 2Jt2go Teamcenter VisualizationJun 17, 2026 Feb 9, 2021 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (All versions < V13.1.0.1). Affected applications lack proper validation of user-supplied data when parsing TIFF files. Th...Show more |
1Siemens 2Jt2go Teamcenter VisualizationJun 17, 2026 Feb 9, 2021 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (All versions < V13.1.0.1). Affected applications lack proper validation of user-supplied data when parsing BMP files. Thi...Show more |
Uninitialized use in USB in Google Chrome prior to 88.0.4324.96 allowed a local attacker to potentially perform out of bounds memory access via via a USB device. |
2Google Microsoft2Chrome Edge ChromiumJun 17, 2026 Feb 9, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Insufficient data validation in V8 in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. |
An issue was discovered in sthttpd through 2.27.1. On systems where the strcpy function is implemented with memcpy, the de_dotdot function may cause a Denial-of-Service (daemon crash) due to overlapping memory ranges bei...Show more |
1Moxa 8Edr 810 2gsfp T Firmware Edr 810 2gsfp FirmwareEdr 810 Vpn 2gsfp T Firmware+5 moreJun 17, 2026 Feb 3, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Certain Moxa Inc products are affected by an improper restriction of operations in EDR-G903 Series Firmware Version 5.5 or lower, EDR-G902 Series Firmware Version 5.5 or lower, and EDR-810 Series Firmware Version 5.6 or...Show more |
1Dlink 1Dir 825 R1 Firmware Jun 17, 2026 Jan 29, 2021 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 An issue was discovered on D-Link DIR-825 R1 devices through 3.0.1 before 2020-11-20. A buffer overflow in the web interface allows attackers to achieve pre-authentication remote code execution. |
1Qualcomm 39Pm3003a Firmware Pm8009 FirmwarePm8150a Firmware+36 moreJun 17, 2026 Jan 21, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Out of bound access issue while handling cvp process control command due to improper validation of buffer pointer received from HLOS in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Ind...Show more |
1Qualcomm 158Aqt1000 Pm3003aPm6150+155 moreJun 17, 2026 Jan 21, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Out of bound access in computer vision control due to improper validation of command length before processing it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Indust...Show more |
1Qualcomm 280Aqt1000 Ar8031Ar8035+277 moreJun 17, 2026 Jan 21, 2021 N/A· v4 6.7 MEDIUM· v3 7.2 HIGH· v2 Out of bound memory access in camera driver due to improper validation on data coming from UMD which is used for offset manipulation of pointer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon...Show more |
1Qualcomm 293Apq8053 Apq8096auAqt1000+290 moreJun 17, 2026 Jan 21, 2021 N/A· v4 6.7 MEDIUM· v3 7.2 HIGH· v2 Out of bound access due to usage of an out-of-range pointer offset in the camera driver. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mob...Show more |
1Cisco 5Catalyst Sd Wan Manager Ios Xe Sd WanSd Wan Firmware+2 moreJun 17, 2026 Jan 20, 2021 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute denial of service (DoS) attacks against an affected device. For more information about these vulnerabilities, s...Show more |
1Cisco 5Catalyst Sd Wan Manager Ios Xe Sd WanSd Wan Firmware+2 moreJun 17, 2026 Jan 20, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute attacks against an affected device. For more information about these vulnerabilities, see the Details section o...Show more |
1Cisco 5Catalyst Sd Wan Manager Ios Xe Sd WanSd Wan Firmware+2 moreJun 17, 2026 Jan 20, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute attacks against an affected device. For more information about these vulnerabilities, see the Details section o...Show more |
1Cisco 5Catalyst Sd Wan Manager Ios Xe Sd WanSd Wan Firmware+2 moreJun 17, 2026 Jan 20, 2021 N/A· v4 8.6 HIGH· v3 7.8 HIGH· v2 Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute denial of service (DoS) attacks against an affected device. For more information about these vulnerabilities, s...Show more |
1Cisco 5Catalyst Sd Wan Manager Ios Xe Sd WanSd Wan Firmware+2 moreJun 17, 2026 Jan 20, 2021 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute denial of service (DoS) attacks against an affected device. For more information about these vulnerabilities, s...Show more |
1Cisco 5Catalyst Sd Wan Manager Ios Xe Sd WanSd Wan Firmware+2 moreJun 17, 2026 Jan 20, 2021 N/A· v4 8.6 HIGH· v3 7.8 HIGH· v2 Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute denial of service (DoS) attacks against an affected device. For more information about these vulnerabilities, s...Show more |
1Cisco 5Catalyst Sd Wan Manager Ios Xe Sd WanSd Wan Firmware+2 moreJun 17, 2026 Jan 20, 2021 N/A· v4 8.6 HIGH· v3 7.8 HIGH· v2 Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute denial of service (DoS) attacks against an affected device. For more information about these vulnerabilities, s...Show more |