CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2025-9782 HIGH
TOTOLINK A702R 4.0.0-B20211108.1423 - Buffer Overflow via formOneKeyAccessButton submit-url Argument
CVSS 8.8
CVE-2025-9781 HIGH
TOTOLINK A702R 4.0.0-B20211108.1423 - Buffer Overflow via formFilter ip6addr Argument
CVSS 8.8
CVE-2025-9780 HIGH
TOTOLINK A702R 4.0.0-B20211108.1423 - Buffer Overflow via formIpQoS mac Parameter
CVSS 8.8
CVE-2025-9779 HIGH
TOTOLINK A702R 4.0.0-B20211108.1423 - Buffer Overflow via formFilter ip6addr Argument
CVSS 8.8
CVE-2025-9748 HIGH
Tenda CH22 1.0.0.1 - Stack-based Buffer Overflow via IPSECsave ipsecno Parameter
CVSS 8.8
CVE-2025-9732 MEDIUM
DCMTK < 3.6.9 - Memory Corruption in dcm2img Component
CVSS 5.3
CVE-2025-9605 CRITICAL
Tenda AC21-AC23 16.03.08.16 - Buffer Overflow
CVSS 9.8
CVE-2025-9527 HIGH
Linksys E1700 1.0.0.4.003 - Buffer Overflow
CVSS 8.8
CVE-2025-9526 HIGH
Linksys E1700 1.0.0.4.003 - Buffer Overflow
CVSS 8.8
CVE-2025-9525 HIGH
Linksys E1700 1.0.0.4.003 - Buffer Overflow
CVSS 8.8
CVE-2025-9523 CRITICAL
Tenda AC1206 15.03.06.23 - Buffer Overflow
CVSS 9.8
CVE-2025-9483 HIGH
Linksys RE6250-RE9000 - Buffer Overflow
CVSS 8.8
CVE-2025-9482 HIGH
Linksys RE6250-RE9000 - Buffer Overflow
CVSS 8.8
CVE-2025-9481 HIGH
Linksys RE6250-RE9000 <1.2.07.001 - Buffer Overflow
CVSS 8.8
CVE-2025-7776 CRITICAL
NetScaler ADC & Gateway - Memory Corruption
CVSS 9.8
CVE-2025-7775 CRITICAL KEV
Citrix NetScaler ADC and Gateway 12.1-13.1 - Remote Code Execution and Denial of Service via Memory Overflow
CVSS 9.8
CVE-2025-9443 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow
CVSS 8.8
CVE-2025-9394 MEDIUM
PoDoFo 1.1.0-dev - Use-After-Free in PdfTokenizer::DetermineDataType
CVSS 5.3
CVE-2025-9393 HIGH
Linksys RE6250-RE9000 <1.2.07.001 - Buffer Overflow
CVSS 8.8
CVE-2025-9392 HIGH
Linksys RE6250-RE9000 - Buffer Overflow
CVSS 8.8
CVE-2025-9390 MEDIUM
vim 9.1.1459-9.1.1615 - Buffer Overflow in xxd
CVSS 5.3
CVE-2025-9389 LOW
vim 9.1.0000 - Memory Corruption in __memmove_avx_unaligned_erms
CVSS 3.3
CVE-2025-9386 MEDIUM
appneta tcpreplay <4.5.1 - Use After Free
CVSS 5.3
CVE-2025-9385 MEDIUM
appneta tcpreplay <4.5.1 - Use After Free
CVSS 5.3
CVE-2025-9363 HIGH
Linksys RE6250-RE9000 <1.2.07.001 - Buffer Overflow
CVSS 8.8
Details
Vulnerabilities 13,962
Exploit Likelihood High