CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,960 vulnerabilities with CWE-119
CVE-2025-15161 HIGH
Tenda WH450 1.0.0.18 - Stack-based Buffer Overflow via PPTPUserSetting delno Parameter
CVSS 7.2
CVE-2025-15160 HIGH
Tenda WH450 1.0.0.18 - Stack-based Buffer Overflow via PPTPServer ip1 Argument
CVSS 7.2
CVE-2025-15155 MEDIUM
floooh/sokol - Stack-based Buffer Overflow in _sg_pipeline_desc_defaults
CVSS 5.3
CVE-2025-15150 MEDIUM
PX4 PX4-Autopilot < 1.16.0 - Stack-Based Buffer Overflow in MavlinkLogHandler
CVSS 5.3
CVE-2025-12771 HIGH
IBM Concert <2.1.0 - Buffer Overflow
CVSS 7.8
CVE-2025-15092 HIGH
UTT 512W < 1.7.7-171114 - Buffer Overflow via ConfigExceptMSN Remark Parameter
CVSS 8.8
CVE-2025-15091 HIGH
UTT 512W < 1.7.7-171114 - Buffer Overflow via formPictureUrl importpictureurl Parameter
CVSS 8.8
CVE-2025-15090 HIGH
UTT 512W < 1.7.7-171114 - Buffer Overflow via timestart Argument in formConfigNoticeConfig
CVSS 8.8
CVE-2025-15089 HIGH
UTT 512W < 1.7.7-171114 - Buffer Overflow via wepkey1 Argument in /goform/APSecurity
CVSS 8.8
CVE-2025-15047 CRITICAL
Tenda WH450 1.0.0.18 - Stack-based Buffer Overflow via PPTPDClient Username Parameter
CVSS 9.8
CVE-2025-15046 CRITICAL
Tenda WH450 1.0.0.18 - Stack-based Buffer Overflow via PPTPClient netmsk Parameter
CVSS 9.8
CVE-2025-14419 HIGH
pdfforge PDF Architect - Remote Code Execution via PDF File Parsing Memory Corruption
CVSS 7.8
CVE-2025-14407 MEDIUM
Soda PDF Desktop - Memory Corruption Information Disclosure via PDF File Parsing
CVSS 5.5
CVE-2025-15045 CRITICAL
Tenda WH450 1.0.0.18 - Stack-based Buffer Overflow via Natlimit Page Parameter
CVSS 9.8
CVE-2025-15044 CRITICAL
Tenda WH450 1.0.0.18 - Stack-based Buffer Overflow via NatStaticSetting Page Parameter
CVSS 9.8
CVE-2025-68615 CRITICAL
net-snmp <5.9.5-5.10.pre2 - Buffer Overflow
CVSS 9.8
CVE-2025-15013 MEDIUM
floooh sokol - Stack-Based Buffer Overflow in sokol_gfx.h
CVSS 5.3
CVE-2025-15010 CRITICAL
Tenda WH450 1.0.0.18 - Stack-based Buffer Overflow via SafeUrlFilter Page Parameter
CVSS 9.8
CVE-2025-15008 HIGH
Tenda WH450 1.0.0.18 - Stack-Based Buffer Overflow via L7Port HTTP Request Handler
CVSS 7.3
CVE-2025-15007 CRITICAL
Tenda WH450 1.0.0.18 - Stack-based Buffer Overflow via L7Im Page Argument
CVSS 9.8
CVE-2025-15006 CRITICAL
Tenda WH450 1.0.0.18 - Stack-based Buffer Overflow via CheckTools ipaddress Parameter
CVSS 9.8
CVE-2025-14995 HIGH
Tenda FH1201 1.2.0.14(408) - Stack-based Buffer Overflow via SetIpBind Page Argument
CVSS 8.8
CVE-2025-14994 HIGH
Tenda FH1201 and FH1206 1.2.0.14(408)/1.2.0.8(8155) - Stack-based Buffer Overflow via webSiteId Argument
CVSS 8.8
CVE-2025-14993 HIGH
Tenda AC18 15.03.05.05 - Stack-based Buffer Overflow via SetDlnaCfg scanList Parameter
CVSS 8.8
CVE-2025-14992 HIGH
Tenda AC18 15.03.05.05 - Stack-based Buffer Overflow via mac Argument in GetParentControlInfo
CVSS 8.8
Details
Vulnerabilities 13,960
Exploit Likelihood High