CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2025-8159 HIGH
D-Link DIR-513 1.0 - Stack-Based Buffer Overflow via curTime Parameter in formLanguageChange
CVSS 8.8
CVE-2025-8140 HIGH
TOTOLINK A702R 4.0.0-B20230721.1521 - Buffer Overflow via formWlanMultipleAP HTTP POST Request Handler
CVSS 8.8
CVE-2025-8139 HIGH
TOTOLINK A702R 4.0.0-B20230721.1521 - Buffer Overflow via formPortFw service_type Parameter
CVSS 8.8
CVE-2025-8138 HIGH
TOTOLINK A702R 4.0.0-B20230721.1521 - Buffer Overflow via formOneKeyAccessButton submit-url Parameter
CVSS 8.8
CVE-2025-8137 HIGH
TOTOLINK A702R 4.0.0-B20230721.1521 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-8136 HIGH
TOTOLINK A702R 4.0.0-B20230721.1521 - Buffer Overflow via formFilter ip6addr Parameter
CVSS 8.8
CVE-2025-8131 HIGH
Tenda AC20 16.03.08.05 - Stack-Based Buffer Overflow via SetStaticRouteCfg
CVSS 8.8
CVE-2025-33077 HIGH
IBM Engineering Systems Design Rhapsody <10.0.1 - Buffer Overflow
CVSS 8.8
CVE-2025-33076 HIGH
IBM Engineering Systems Design Rhapsody <10.0.1 - Buffer Overflow
CVSS 8.8
CVE-2025-8060 HIGH
Tenda AC23 16.03.07.52 - Stack-Based Buffer Overflow via setMacFilterCfg deviceList Parameter
CVSS 8.8
CVE-2025-8044 CRITICAL
Firefox < 141.0 and Thunderbird < 141.0 - Memory Corruption
CVSS 9.8
CVE-2025-8040 HIGH
Firefox and Thunderbird < 140.1 - Memory Corruption
CVSS 8.8
CVE-2025-8035 HIGH
Firefox and Thunderbird < 141.0 - Memory Corruption
CVSS 8.8
CVE-2025-8034 HIGH
Mozilla Firefox < 115.26.0 - Memory Corruption
CVSS 8.8
CVE-2025-8019 HIGH
Shenzhen Libituo Technology LBT-T300-T310 2.2.3.6 - Buffer Overflow in at/appy.cgi
CVSS 8.8
CVE-2025-8017 HIGH
Tenda AC7 15.03.06.44 - Stack-Based Buffer Overflow in setMacFilterCfg deviceList Parameter
CVSS 8.8
CVE-2025-7945 HIGH
D-Link DIR-513 <20190831 - Buffer Overflow
CVSS 8.8
CVE-2025-7325 HIGH
CADImage < 15.0.0.8 - Remote Code Execution via DXF File Parsing
CVSS 7.8
CVE-2025-7323 HIGH
CADImage < 15.0.0.8 - Remote Code Execution via DWG File Parsing
CVSS 7.8
CVE-2025-7321 HIGH
CADImage < 15.0.0.8 - Remote Code Execution via DWG File Parsing
CVSS 7.8
CVE-2025-7320 HIGH
CADImage < 15.0.0.8 - Remote Code Execution via DXF File Parsing
CVSS 7.8
CVE-2025-7318 HIGH
CADImage < 15.0.0.8 - Remote Code Execution via DWG File Parsing
CVSS 7.8
CVE-2025-7317 HIGH
CADImage < 15.0.0.8 - Remote Code Execution via DWG File Parsing
CVSS 7.8
CVE-2025-7316 HIGH
IrfanView CADImage Plugin < 15.0.0.8 - Remote Code Execution via DWG File Parsing
CVSS 7.8
CVE-2025-7315 HIGH
CADImage < 15.0.0.8 - Remote Code Execution via DWG File Parsing
CVSS 7.8
Details
Vulnerabilities 13,962
Exploit Likelihood High