CWE-120
4,417 CVEs • Abstraction: Base • Likelihood of Exploit: High
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
CVEs (4,417)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A security flaw has been discovered in UTT 进取 520W 1.7.7-180627. This impacts the function strcpy of the file /goform/ConfigWirelessBase. Performing a manipulation of the argument ssid results in buffer overflow. The att...Show more |
A vulnerability was identified in UTT 进取 520W 1.7.7-180627. This affects the function strcpy of the file /goform/formFireWall. Such manipulation of the argument GroupName leads to buffer overflow. The attack can be execu...Show more |
A vulnerability was determined in UTT 进取 520W 1.7.7-180627. The impacted element is the function strcpy of the file /goform/formConfigFastDirectionW. This manipulation of the argument ssid causes buffer overflow. Remote...Show more |
1Ui 4Airfiber Af60 Xg Firmware Airfiber Af60 FirmwareAirmax Ac Firmware+1 moreJul 30, 2026 Jan 8, 2026 N/A· v4 8.8 HIGH· v3 N/A· v2 A malicious actor in Wi-Fi range of the affected product could leverage a vulnerability in the airMAX Wireless Protocol to achieve a remote code execution (RCE) within the affected product. |
A message out-of-bounds read vulnerability in Trend Micro Apex Central could allow a remote attacker to create a denial-of-service condition on affected installations. Please note: authentication is not required in or...Show more |
A message unchecked NULL return value vulnerability in Trend Micro Apex Central could allow a remote attacker to create a denial-of-service condition on affected installations. Please note: authentication is not requi...Show more |
A LoadLibraryEX vulnerability in Trend Micro Apex Central could allow an unauthenticated remote attacker to load an attacker-controlled DLL into a key executable, leading to execution of attacker-supplied code under the...Show more |
zlib versions up to and including 1.3.1.2 include a global buffer overflow in the untgz utility located under contrib/untgz. The vulnerability is limited to the standalone demonstration utility and does not affect the co...Show more |
1Qualcomm 45Fastconnect 6200 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+42 moreJun 17, 2026 Jan 7, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when copying overlapping buffers during memory operations due to incorrect offset calculations. |
1Qualcomm 45Fastconnect 6200 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+42 moreJun 17, 2026 Jan 7, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while passing pages to DSP with an unaligned starting address. |
1Qualcomm 45Fastconnect 6700 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+42 moreJun 17, 2026 Jan 7, 2026 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption while parsing clock configuration data for a specific hardware type. |
1Qualcomm 144Csra6620 Firmware Csra6640 FirmwareFastconnect 6200 Firmware+141 moreJun 17, 2026 Jan 7, 2026 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption while processing shared command buffer packet between camera userspace and kernel. |
A weakness has been identified in Tenda AC23 16.03.07.52. This affects the function sscanf of the file /goform/PowerSaveSet. Executing a manipulation of the argument Time can lead to buffer overflow. The attack can be la...Show more |
1Samsung 4Exynos 1380 Firmware Exynos 1480 FirmwareExynos 1580 Firmware+1 moreJun 17, 2026 Jan 5, 2026 N/A· v4 8.4 HIGH· v3 N/A· v2 An issue was discovered in Samsung Mobile Processor Exynos 1380, 1480, 2400, and 1580. Incorrect Handling of the NL80211 vendor command leads to a buffer overflow during handling of an IOCTL message. |
1Samsung 4Exynos 1380 Firmware Exynos 1480 FirmwareExynos 1580 Firmware+1 moreJun 17, 2026 Jan 5, 2026 N/A· v4 8.4 HIGH· v3 N/A· v2 An issue was discovered in the WiFi driver in Samsung Mobile Processor Exynos 1380, 1480, 2400, 1580. Mishandling of an NL80211 vendor command leads to a buffer overflow. |
A vulnerability has been found in UTT 进取 520W 1.7.7-180627. This issue affects the function strcpy of the file /goform/ConfigAdvideo. The manipulation of the argument timestart leads to buffer overflow. The attack is pos...Show more |
A flaw has been found in UTT 进取 520W 1.7.7-180627. This vulnerability affects the function strcpy of the file /goform/formTaskEdit. Executing a manipulation of the argument selDateType can lead to buffer overflow. The at...Show more |
A vulnerability was detected in UTT 进取 520W 1.7.7-180627. This affects the function strcpy of the file /goform/formPptpClientConfig. Performing a manipulation of the argument EncryptionMode results in buffer overflow. Re...Show more |
A security vulnerability has been detected in UTT 进取 520W 1.7.7-180627. Affected by this issue is the function strcpy of the file /goform/formUser. Such manipulation of the argument passwd1 leads to buffer overflow. The...Show more |
A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to modify memory or crash p...Show more |