CWE-119
14,074 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CVEs (14,074)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Ivanti 2Desktop&server Management Service Manager Heat Remote ControlJun 17, 2026 Aug 6, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Denial-of-Service (DoS) in Ivanti Service Manager HEAT Remote Control 7.4 due to a buffer overflow in the protocol parser of the ‘HEATRemoteService’ agent. The DoS can be triggered by sending a specially crafted network...Show more |
A vulnerability in Cisco SD-WAN Solution Software could allow an unauthenticated, remote attacker to cause a buffer overflow on an affected device. The vulnerability is due to insufficient input validation. An attacker c...Show more |
1Qualcomm 9Kamorta Firmware Qcs404 FirmwareRennell Firmware+6 moreJun 17, 2026 Jul 30, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Memory corruption can occurs in trusted application if offset size from HLOS is more than actual mapped buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networkin...Show more |
1Qualcomm 9Mdm9206 Firmware Mdm9207c FirmwareMdm9607 Firmware+6 moreJun 17, 2026 Jul 30, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Register write via debugfs is disabled by default to prevent register writing via debugfs. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &...Show more |
3Netapp NodejsOracle9Active Iq Unified Manager Banking Extensibility WorkbenchBlockchain Platform+6 moreJun 17, 2026 Jul 24, 2020 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 napi_get_value_string_*() allows various kinds of memory corruption in node < 10.21.0, 12.18.0, and < 14.4.0. |
1Rockwellautomation 1Factorytalk View Jun 17, 2026 Jul 20, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 In all versions of FactoryTalk View SE, after bypassing memory corruption mechanisms found in the operating system, a local, authenticated attacker may corrupt the associated memory space allowing for arbitrary code exec...Show more |
1Cisco 2Rv110w Wireless N Vpn Firewall Firmware Rv215w Wireless N Vpn Router FirmwareJun 17, 2026 Jul 16, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 A vulnerability in the web-based management interface of Cisco RV110W Wireless-N VPN Firewall and Cisco RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to execute arbitrary code on an affecte...Show more |
1Cisco 4Rv110w Wireless N Vpn Firewall Firmware Rv130 Vpn Router FirmwareRv130w Wireless N Multifunction Vpn Router Firmware+1 moreJun 17, 2026 Jul 16, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device. The...Show more |
1Cisco 4Rv110w Wireless N Vpn Firewall Firmware Rv130 FirmwareRv130w Firmware+1 moreJun 17, 2026 Jul 16, 2020 N/A· v4 8.8 HIGH· v3 9.0 HIGH· v2 Multiple vulnerabilities in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction VPN Router, and RV215W Wireless-N VPN Router could allow an au...Show more |
1Cisco 4Rv110w Firmware Rv130 FirmwareRv130w Firmware+1 moreJun 17, 2026 Jul 16, 2020 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 Multiple vulnerabilities in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction VPN Router, and RV215W Wireless-N VPN Router could allow an au...Show more |
1Huawei 50Ar120 S Firmware Ar1200 S FirmwareAr1200 Firmware+47 moreJun 17, 2026 Jul 8, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by sending the specially crafted messages to the affected device. Due to th...Show more |
1Huawei 50Ar120 S Firmware Ar1200 S FirmwareAr1200 Firmware+47 moreJun 17, 2026 Jul 8, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by sending the specially crafted messages to the affected device. Due to th...Show more |
1Huawei 50Ar120 S Firmware Ar1200 S FirmwareAr1200 Firmware+47 moreJun 17, 2026 Jul 8, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by sending the specially crafted messages to the affected device. Due to th...Show more |
RIOT 2020.04 has a buffer overflow in the base64 decoder. The decoding function base64_decode() uses an output buffer estimation function to compute the required buffer capacity and validate against the provided buffer s...Show more |
An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can trigger an out-of-bounds access and device reset via a 4K wallpaper image because ImageProcessHelper mishandles boundary checks. The...Show more |
An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exynos 7885 chipsets) software. The Bluetooth Low Energy (BLE) component has a buffer overflow with a resultant deadlock or crash. The Samsung ID...Show more |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Jul 7, 2020 N/A· v4 6.5 MEDIUM· v3 4.9 MEDIUM· v2 An issue was discovered in Xen through 4.13.x, allowing Arm guest OS users to cause a hypervisor crash because of a missing alignment check in VCPUOP_register_vcpu_info. The hypercall VCPUOP_register_vcpu_info is used by...Show more |
4Debian FedoraprojectOpensuse+1 more4Debian Linux FedoraLeap+1 moreJun 17, 2026 Jul 7, 2020 N/A· v4 6.5 MEDIUM· v3 4.7 MEDIUM· v2 An issue was discovered in Xen through 4.13.x, allowing x86 HVM guest OS users to cause a hypervisor crash. An inverted conditional in x86 HVM guests' dirty video RAM tracking code allows such guests to make Xen de-refer...Show more |
NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which the software does not restrict or incorrectly restricts operations within the boundaries of a resource that is accessed by using an index o...Show more |
Adobe Illustrator versions 24.1.2 and earlier have a buffer errors vulnerability. Successful exploitation could lead to arbitrary code execution . |