CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,960 vulnerabilities with CWE-119
CVE-2025-43419 HIGH
Safari < 26.0 - Memory Corruption via Malicious Web Content
CVSS 8.8
CVE-2025-43398 MEDIUM
iPadOS < 26.1 - Denial of Service via Memory Handling Issue
CVSS 5.5
CVE-2025-43373 HIGH
macOS < 14.8.2, < 15.7.2, < 26.1 - Memory Corruption
CVSS 7.5
CVE-2025-12622 HIGH
Tenda AC10 16.03.10.13 - Buffer Overflow
CVSS 8.8
CVE-2025-12619 HIGH
Tenda A15 15.13.07.13 - Buffer Overflow
CVSS 8.8
CVE-2025-12618 HIGH
Tenda AC8 16.03.34.06 - Buffer Overflow
CVSS 8.8
CVE-2025-12611 HIGH
Tenda AC21 16.03.08.16 - Buffer Overflow
CVSS 8.8
CVE-2025-12596 HIGH
Tenda AC23 16.03.07.52 - Buffer Overflow
CVSS 8.8
CVE-2025-12595 HIGH
Tenda AC23 16.03.07.52 - Buffer Overflow
CVSS 8.8
CVE-2025-12322 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow in fromNatStaticSetting via Page Parameter
CVSS 8.8
CVE-2025-62594 MEDIUM
ImageMagick < 7.1.2-8 - Denial of Service via CLAHEImage Function
CVSS 4.7
CVE-2025-52264 HIGH
StarCharge Artemis AC Charger <1.0.4 - Buffer Overflow
CVSS 8.0
CVE-2025-12274 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via P2pListFilter Page Parameter
CVSS 8.8
CVE-2025-12273 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via webExcptypemanFilter Page Parameter
CVSS 8.8
CVE-2025-12272 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via AddressNat Page Parameter
CVSS 8.8
CVE-2025-12271 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via RouteStatic Page Argument
CVSS 8.8
CVE-2025-12265 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via VirtualSer Page Parameter
CVSS 8.8
CVE-2025-12260 HIGH
TOTOLINK A3300R 17.0.0cu.557_B20221024 - Stack-based Buffer Overflow via setSyslogCfg POST Parameter
CVSS 8.8
CVE-2025-12259 HIGH
TOTOLINK A3300R 17.0.0cu.557_B20221024 - Stack-Based Buffer Overflow via setScheduleCfg recHour Parameter
CVSS 8.8
CVE-2025-12258 HIGH
TOTOLINK A3300R 17.0.0cu.557_B20221024 - Stack-Based Buffer Overflow via opmode Parameter
CVSS 8.8
CVE-2025-12241 HIGH
TOTOLINK A3300R 17.0.0cu.557_B20221024 - Stack-based Buffer Overflow via lang Parameter in setLanguageCfg
CVSS 8.8
CVE-2025-12240 HIGH
TOTOLINK A3300R 17.0.0cu.557_B20221024 - Buffer Overflow via setDmzCfg IP Parameter
CVSS 8.8
CVE-2025-12239 HIGH
TOTOLINK A3300R 17.0.0cu.557_B20221024 - Buffer Overflow in setDdnsCfg Function
CVSS 8.8
CVE-2025-12236 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via DhcpListClient Page Parameter
CVSS 8.8
CVE-2025-12235 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow in SetIpBind Function via Page Argument
CVSS 8.0
Details
Vulnerabilities 13,960
Exploit Likelihood High