← Back
CWE-787

14,849 CVEs • Abstraction: Base • Likelihood of Exploit: High

Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

JSON object

Loading...

CVEs (14,849)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
4Apache
DebianFedoraproject+1 more
5Debian Linux
FedoraHttp Server+2 more
Jun 17, 2026
Mar 14, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Out-of-bounds Write vulnerability in mod_sed of Apache HTTP Server allows an attacker to overwrite heap memory with possibly attacker provided data. This issue affects Apache HTTP Server 2.4 version 2.4.52 and prior vers...Show more
Out-of-bounds Write vulnerability in mod_sed of Apache HTTP Server allows an attacker to overwrite heap memory with possibly attacker provided data. This issue affects Apache HTTP Server 2.4 version 2.4.52 and prior versions.Show less
1Gpac
1Gpac
Jun 17, 2026
Mar 12, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
GPAC 2.0 allows a heap-based buffer overflow in gf_base64_encode. It can be triggered via MP4Box.
1Adobe
1After Effects
Jun 17, 2026
Mar 11, 2022
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
Adobe After Effects versions 22.2 (and earlier) and 18.4.4 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation...Show more
Adobe After Effects versions 22.2 (and earlier) and 18.4.4 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.Show less
1Adobe
1After Effects
Jun 17, 2026
Mar 11, 2022
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
Adobe After Effects versions 22.2 (and earlier) and 18.4.4 (and earlier) are affected by an Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Explo...Show more
Adobe After Effects versions 22.2 (and earlier) and 18.4.4 (and earlier) are affected by an Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.Show less
1Adobe
1After Effects
Jun 17, 2026
Mar 11, 2022
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
Adobe After Effects versions 22.2 (and earlier) and 18.4.4 (and earlier) are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Explo...Show more
Adobe After Effects versions 22.2 (and earlier) and 18.4.4 (and earlier) are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.Show less
1Adobe
1After Effects
Jun 17, 2026
Mar 11, 2022
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
Adobe After Effects versions 22.2 (and earlier) and 18.4.4 (and earlier) are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Explo...Show more
Adobe After Effects versions 22.2 (and earlier) and 18.4.4 (and earlier) are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.Show less
4Debian
FasterxmlNetapp+1 more
36Active Iq Unified Manager
Big Data Spatial And GraphCloud Insights Acquisition Unit+33 more
Jun 17, 2026
Mar 11, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the time parameter.
1Tenda
1Ax12 Firmware
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub_42DE00. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.
1Tenda
1Ax12 Firmware
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub_4327CC. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetProvince. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ProvinceCode parameter.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a heap overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the urls parameter.
1Tenda
1Ax12 Firmware
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub_42E328. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ntpServer parameter.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the deviceId parameter.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ddnsPwd parameter.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function form_fast_setting_wifi_set. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ssid parameter.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ddnsDomain parameter.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the deviceName parameter.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ddnsEn parameter.