CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,972 vulnerabilities with CWE-119
CVE-2021-20588 HIGH
Mitsubishi Electric FA Engineering Software - Buffer Overflow
CVSS 7.5
CVE-2021-27376 CRITICAL
nb-connect <1.0.3 - Memory Corruption
CVSS 9.8
CVE-2021-21140 MEDIUM
Google Chrome <88.0.4324.96 - Memory Corruption
CVSS 6.8
CVE-2021-21118 HIGH
Google Chrome <88.0.4324.96 - Memory Corruption
CVSS 8.8
CVE-2021-26843 HIGH
sthttpd < 2.27.1 - Denial of Service via de_dotdot Function
CVSS 7.5
CVE-2021-1241 HIGH
Cisco SD-WAN - Unauthenticated Denial of Service
CVSS 8.6
CVE-2021-1301 CRITICAL
Cisco SD-WAN - Unauthenticated Remote Code Execution via Memory Buffer Overflow
CVSS 9.8
CVE-2021-1300 CRITICAL
Cisco SD-WAN - Unauthenticated Remote Code Execution via Memory Buffer Overflow
CVSS 9.8
CVE-2021-1279 HIGH
Cisco SD-WAN - Unauthenticated Denial of Service
CVSS 8.6
CVE-2021-1278 HIGH
Cisco SD-WAN - Unauthenticated Denial of Service
CVSS 8.6
CVE-2021-1274 HIGH
Cisco SD-WAN Firmware - Unauthenticated Denial of Service
CVSS 8.6
CVE-2021-1273 HIGH
Cisco SD-WAN - Unauthenticated Denial of Service
CVSS 8.6
CVE-2021-0217 HIGH
Juniper Junos OS - Denial of Service via DHCP Packet Processing
CVSS 7.4
CVE-2021-1131 MEDIUM
Cisco Video Surveillance 8000 Series - DoS
CVSS 6.5
CVE-2021-1713 HIGH
Microsoft Excel - Remote Code Execution
CVSS 7.8
CVE-2021-21458 HIGH
SAP 3D Visual Enterprise Viewer 9 - Denial of Service via Manipulated IFF File
CVSS 8.8
CVE-2021-21457 HIGH
SAP 3D Visual Enterprise Viewer 9 - Denial of Service via Manipulated IFF File
CVSS 8.8
CVE-2021-21453 HIGH
SAP 3D Visual Enterprise Viewer 9 - Denial of Service via RLE File Parsing
CVSS 8.8
CVE-2021-21452 HIGH
SAP 3D Visual Enterprise Viewer 9 - Denial of Service via Manipulated GIF File
CVSS 8.8
CVE-2021-21451 HIGH
SAP 3D Visual Enterprise Viewer 9 - Denial of Service via Manipulated SGI File
CVSS 8.8
CVE-2021-21450 HIGH
SAP 3D Visual Enterprise Viewer 9 - Denial of Service via Manipulated PSD File
CVSS 8.8
CVE-2021-21449 HIGH
SAP 3D Visual Enterprise Viewer 9 - Denial of Service via Manipulated IFF File
CVSS 8.8
CVE-2020-36881 HIGH
Flexsense DiskBoss 7.7.14 - Buffer Overflow
CVSS 7.8
CVE-2020-36880 HIGH
Flexsense DiskBoss 7.7.14 - Buffer Overflow
CVSS 7.8
CVE-2020-36855 MEDIUM
DCMTK < 3.6.6 - Stack-Based Buffer Overflow in dcmqrscp parseQuota Function
CVSS 5.3
Details
Vulnerabilities 13,972
Exploit Likelihood High