CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2025-4832 HIGH
TOTOLINK A702R, A3002R, and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-4831 HIGH
TOTOLINK A702R, A3002R, and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via Site Survey Profile POST Request
CVSS 8.8
CVE-2025-4830 HIGH
TOTOLINK A702R, A3002R, and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-4829 HIGH
TOTOLINK A702R, A3002R, A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-4827 HIGH
TOTOLINK A702R, A3002R, and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-4826 HIGH
TOTOLINK A702R, A3002R, A3002RU 3.0.0-B20230809.1615 - Buffer Overflow
CVSS 8.8
CVE-2025-4825 HIGH
TOTOLINK A702R, A3002R, A3002RU 3.0.0-B20230809.1615 - Buffer Overflow
CVSS 8.8
CVE-2025-4824 HIGH
TOTOLINK A702R, A3002R, A3002RU 3.0.0-B20230809.1615 - Buffer Overflow
CVSS 8.8
CVE-2025-4823 HIGH
TOTOLINK A702R, A3002R, A3002RU 3.0.0-B20230809.1615 - Buffer Overflow
CVSS 8.8
CVE-2025-4810 HIGH
Tenda AC7 15.03.06.44 - Buffer Overflow
CVSS 8.8
CVE-2025-4809 HIGH
Tenda AC7 15.03.06.44 - Buffer Overflow
CVSS 8.8
CVE-2025-4792 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow via MDELETE Command Handler
CVSS 7.3
CVE-2025-4791 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow in HASH Command Handler
CVSS 7.3
CVE-2025-4790 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow in GLOB Command Handler
CVSS 7.3
CVE-2025-4789 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow in LCD Command Handler
CVSS 7.3
CVE-2025-4788 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow via DELETE Command Handler
CVSS 7.3
CVE-2025-4733 HIGH
TOTOLINK A3002R and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler mac Argument
CVSS 8.8
CVE-2025-4732 HIGH
TOTOLINK A3002R and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-4731 HIGH
TOTOLINK A3002R and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-4730 HIGH
TOTOLINK A3002R and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via devicemac1 Parameter
CVSS 8.8
CVE-2025-4638 CRITICAL
PointCloudLibrary <1.14.0 - Memory Corruption
CVSS 9.8
CVE-2025-31257 MEDIUM
Safari < 18.5 - Denial of Service via Malicious Web Content
CVSS 4.7
CVE-2025-31246 HIGH
macOS < 14.7.6 and < 15.5 - Memory Corruption via Malicious AFP Server Connection
CVSS 8.8
CVE-2025-31238 HIGH
Safari < 18.5 - Memory Corruption via Malicious Web Content
CVSS 7.3
CVE-2025-31234 HIGH
iPadOS < 18.5 - Memory Corruption via Input Sanitization Issue
CVSS 8.2
Details
Vulnerabilities 13,962
Exploit Likelihood High