CWE-121
3,520 CVEs • Abstraction: Variant • Likelihood of Exploit: High
Stack-based Buffer Overflow
A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).
CVEs (3,520)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 3Windows 11 21h2 Windows 11 22h2Windows 11 23h2Jun 17, 2026 Dec 12, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Windows Bluetooth Driver Remote Code Execution Vulnerability |
Tenda AX12 V22.03.01.46 was discovered to contain a stack overflow via the list parameter at /goform/SetVirtualServerCfg. |
Delta Electronics DOPSoft is vulnerable to a stack-based buffer overflow, which may allow for arbitrary code execution if an attacker can lead a legitimate user to execute a specially crafted file.
|
Several versions of ALEOS, including ALEOS 4.16.0, include an opensource third-party component which can be exploited from the local area network, resulting in a Denial of Service condition for the captiv...Show more |
Dell DM5500 5.14.0.0, contains a Stack-based Buffer Overflow Vulnerability in the appliance. An unauthenticated remote attacker may exploit this vulnerability to crash the affected process or execute arbitrary code on...Show more |
TinyDir is a lightweight C directory and file reader. Buffer overflows in the `tinydir_file_open()` function. This vulnerability has been patched in version 1.2.6. |
Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the firewallEn parameter in the function SetFirewallCfg. |
1Fujielectric 1Tellus Lite V Simulator Jun 17, 2026 Nov 22, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Stack-based buffer overflow may occur when Fuji Electric Tellus Lite V-Simulator parses a specially-crafted input file. |
Possible variant of CVE-2021-3434 in function le_ecred_reconf_req. |
1Zavio 11B8220 Firmware B8520 FirmwareCb3211 Firmware+8 moreJun 17, 2026 Nov 8, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Zavio CF7500, CF7300, CF7201, CF7501, CB3211, CB3212, CB5220, CB6231, B8520, B8220, and CD321 IP Cameras with firmware version M2.1.6.05 has a command injection vulnerability in their implementation of their binar...Show more |
1Zavio 11B8220 Firmware B8520 FirmwareCb3211 Firmware+8 moreJun 17, 2026 Nov 8, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Zavio CF7500, CF7300, CF7201, CF7501, CB3211, CB3212, CB5220, CB6231, B8520, B8220, and CD321 IP Cameras with firmware version M2.1.6.05 are vulnerable to multiple instances of stack-based overflows. While parsing...Show more |
1Zavio 11B8220 Firmware B8520 FirmwareCb3211 Firmware+8 moreJun 17, 2026 Nov 8, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Zavio CF7500, CF7300, CF7201, CF7501, CB3211, CB3212, CB5220, CB6231, B8520, B8220, and CD321 IP Cameras with firmware version M2.1.6.05 are vulnerable to multiple instances of stack-based overflows. During the pr...Show more |
1Zavio 11B8220 Firmware B8520 FirmwareCb3211 Firmware+8 moreJun 17, 2026 Nov 8, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Zavio CF7500, CF7300, CF7201, CF7501, CB3211, CB3212, CB5220, CB6231, B8520, B8220, and CD321 IP Cameras with firmware version M2.1.6.05 are vulnerable to multiple instances of stack-based overflows. While processi...Show more |
1Zavio 11B8220 Firmware B8520 FirmwareCb3211 Firmware+8 moreJun 17, 2026 Nov 8, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Zavio CF7500, CF7300, CF7201, CF7501, CB3211, CB3212, CB5220, CB6231, B8520, B8220, and CD321 IP Cameras with firmware version M2.1.6.05 are vulnerable to stack-based overflows. During the process of updating certai...Show more |
A stack buffer overflow vulnerability discovered in AsfSecureBootDxe in Insyde InsydeH2O with kernel 5.0 through 5.5 allows attackers to run arbitrary code execution during the DXE phase. |
A flaw was discovered in Elasticsearch, affecting the _search API that allowed a specially crafted query string to cause a Stack Overflow and ultimately a Denial of Service. |
TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formDMZ. |
TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formIpQoS. |
TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formDosCfg. |
TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formTcpipSetup. |