CWE-125
9,119 CVEs • Abstraction: Base
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
CVEs (9,119)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Out-of-bounds read for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service via adjacent access. |
Out-of-bounds read for some Intel(R) Graphics Driver software may allow an authenticated user to potentially enable information disclosure via local access. |
1Microsoft 7Windows 10 1507 Windows 10 1607Windows 10 1809+4 moreJun 17, 2026 May 13, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally. |
1Microsoft 2365 Apps Office Long Term Servicing ChannelJun 17, 2026 May 13, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to execute code locally. |
1Microsoft 4365 Apps ExcelOffice+1 moreJun 17, 2026 May 13, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
1Microsoft 5365 Apps ExcelOffice+2 moreJun 17, 2026 May 13, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
1Microsoft 5365 Apps ExcelOffice+2 moreJun 17, 2026 May 13, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
1Microsoft 15Windows 10 1507 Windows 10 1607Windows 10 1809+12 moreJun 17, 2026 May 13, 2025 N/A· v4 5.7 MEDIUM· v3 N/A· v2 Integer underflow (wrap or wraparound) in Windows Kernel allows an unauthorized attacker to disclose information over an adjacent network. |
1Microsoft 3Windows 11 22h2 Windows 11 23h2Windows 11 24h2Jun 17, 2026 May 13, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 Out-of-bounds read in Web Threat Defense (WTD.sys) allows an unauthorized attacker to deny service over a network. |
1Microsoft 15Windows 10 1507 Windows 10 1607Windows 10 1809+12 moreJun 17, 2026 May 13, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network. |
1Microsoft 15Windows 10 1507 Windows 10 1607Windows 10 1809+12 moreJun 17, 2026 May 13, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network. |
1Microsoft 15Windows 10 1507 Windows 10 1607Windows 10 1809+12 moreJun 17, 2026 May 13, 2025 N/A· v4 5.4 MEDIUM· v3 N/A· v2 Buffer over-read in Windows SMB allows an authorized attacker to disclose information over a network. |
1Microsoft 15Windows 10 1507 Windows 10 1607Windows 10 1809+12 moreJun 17, 2026 May 13, 2025 N/A· v4 4.0 MEDIUM· v3 N/A· v2 Out-of-bounds read in Windows File Server allows an unauthorized attacker to disclose information locally. |
1Microsoft 15Windows 10 1507 Windows 10 1607Windows 10 1809+12 moreJun 17, 2026 May 13, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network. |
1Microsoft 15Windows 10 1507 Windows 10 1607Windows 10 1809+12 moreJun 17, 2026 May 13, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network. |
1Microsoft 15Windows 10 1507 Windows 10 1607Windows 10 1809+12 moreJun 17, 2026 May 13, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network. |
1Siemens 1Scalance Lpe9403 Firmware Jun 17, 2026 May 13, 2025 5.3 MEDIUM· v4 4.3 MEDIUM· v3 N/A· v2 A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions). Affected devices do not properly handle multiple incoming Profinet packets received in rapid succession. An unauthenticated re...Show more |
1Siemens 1Scalance Lpe9403 Firmware Jun 17, 2026 May 13, 2025 5.3 MEDIUM· v4 4.3 MEDIUM· v3 N/A· v2 A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0 HF0). Affected devices do not properly validate incoming Profinet packets. An unauthenticated remote attacker can exploit...Show more |
1Siemens 2Teamcenter Visualization Tecnomatix Plant SimulationJun 17, 2026 May 13, 2025 7.3 HIGH· v4 7.8 HIGH· v3 N/A· v2 A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.14), Teamcenter Visualization V2312 (All versions < V2312.0010), Teamcenter Visualization V2406 (All versions < V2406.0008), T...Show more |
1Siemens 5Simatic Pcs Neo Sinec NmsSinema Remote Connect+2 moreJun 17, 2026 May 13, 2025 8.7 HIGH· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (All versions), SINEC NMS (All versions < V4.0), SINEMA Remote Connect (All versions), Totally Integrated Automation Portal...Show more |