CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2025-7116 HIGH
UTT 750W < 3.2.2-191225 - Buffer Overflow via SSID Parameter in Fast_wireless_conf
CVSS 8.8
CVE-2025-7094 HIGH
Belkin F9K1122 1.00.33 - Stack-Based Buffer Overflow via formBSSetSitesurvey submit-url-ok Parameter
CVSS 8.8
CVE-2025-7093 HIGH
Belkin F9K1122 1.00.33 - Stack-Based Buffer Overflow via formSetLanguage Webpage Argument
CVSS 8.8
CVE-2025-7092 HIGH
Belkin F9K1122 1.00.33 - Stack-Based Buffer Overflow in formWlanSetupWPS via wps_enrolee_pin
CVSS 8.8
CVE-2025-7091 HIGH
Belkin F9K1122 1.00.33 - Stack-based Buffer Overflow in formWlanMP via Multiple Parameters
CVSS 8.8
CVE-2025-7090 HIGH
Belkin F9K1122 1.00.33 - Stack-based Buffer Overflow in formConnectionSetting
CVSS 8.8
CVE-2025-7089 HIGH
Belkin F9K1122 1.00.33 - Stack-Based Buffer Overflow via pppUserName in formWanTcpipSetup
CVSS 8.8
CVE-2025-7088 HIGH
Belkin F9K1122 1.00.33 - Stack-Based Buffer Overflow in formPPPoESetup via pppUserName
CVSS 8.8
CVE-2025-7087 HIGH
Belkin F9K1122 1.00.33 - Stack-Based Buffer Overflow in formL2TPSetup via L2TPUserName
CVSS 8.8
CVE-2025-7086 HIGH
Belkin F9K1122 1.00.33 - Stack-Based Buffer Overflow in formPPTPSetup via pptpUserName
CVSS 8.8
CVE-2025-7085 HIGH
Belkin F9K1122 1.00.33 - Stack-Based Buffer Overflow in formiNICWpsStart via pinCode
CVSS 8.8
CVE-2025-7084 HIGH
Belkin F9K1122 1.00.33 - Stack-Based Buffer Overflow via formWpsStart pinCode Parameter
CVSS 8.8
CVE-2025-7077 HIGH
LBT-T300-T310 Firmware < 2.2.3.6 - Buffer Overflow via config_3g_para
CVSS 8.8
CVE-2025-7069 LOW
HDF5 1.14.6 - Heap-Based Buffer Overflow in H5FS__sect_link_size
CVSS 3.3
CVE-2025-7067 LOW
HDF5 1.14.6 - Heap-Based Buffer Overflow in H5FS__sinfo_serialize_node_cb
CVSS 3.3
CVE-2025-6953 HIGH
TOTOLINK A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via submit-url Parameter
CVSS 8.8
CVE-2025-6940 HIGH
TOTOLINK A702R 4.0.0-B20230721.1521 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6939 HIGH
TOTOLINK A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6887 HIGH
Tenda AC5 15.03.06.47 - Stack-Based Buffer Overflow via SetSysTimeCfg time/timeZone Parameter
CVSS 8.8
CVE-2025-6886 HIGH
Tenda AC5 15.03.06.47 - Stack-Based Buffer Overflow via schedStartTime/schedEndTime
CVSS 8.8
CVE-2025-6882 HIGH
D-Link DIR-513 1.0 - Buffer Overflow via curTime Parameter in formSetWanPPTP
CVSS 8.8
CVE-2025-6881 HIGH
D-Link DI-8100 16.07.21 - Buffer Overflow via mschap_en Parameter in pppoe_base.asp
CVSS 8.8
CVE-2025-6857 LOW
HDF5 1.14.6 - Stack-Based Buffer Overflow in H5G__node_cmp3 Function
CVSS 3.3
CVE-2025-6856 LOW
HDF5 1.14.6 - Use-After-Free in H5FL__reg_gc_list
CVSS 3.3
CVE-2025-6825 HIGH
TOTOLINK A702R <4.0.0-B20230721.1521 - Buffer Overflow
CVSS 8.8
Details
Vulnerabilities 13,962
Exploit Likelihood High