CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2024-56438 MEDIUM
Huawei EMUI and HarmonyOS - Denial of Service in HUKS Module
CVSS 6.0
CVE-2024-12752 HIGH
Foxit PDF Editor 11.0.0-11.2.11.54113 & Reader <2024.3.0.26795 RCE via AcroForm Memory Corruption
CVSS 7.8
CVE-2024-12988 HIGH
Netgear R6900P and R7000P 1.3.3.154 - Buffer Overflow in HTTP Header Handler
CVSS 7.3
CVE-2024-12354 MEDIUM
Phone Contact Manager System 1.0 - Buffer Overflow in User Menu UserInterface::MenuDisplayStart
CVSS 5.3
CVE-2024-12352 MEDIUM
TOTOLINK EX1800T 9.1.0cu.2112_B20220316 - Stack-Based Buffer Overflow in cstecgi.cgi
CVSS 4.3
CVE-2024-12344 MEDIUM
TP-Link VN020 F3v(T) TT_V6.2.1021 - Memory Corruption via FTP USER Command Handler
CVSS 6.3
CVE-2024-12343 MEDIUM
TP-Link VN020 F3v(T) TT_V6.2.1021 - Buffer Overflow via NewConnectionType Argument
CVSS 6.5
CVE-2024-12186 MEDIUM
code-projects Hotel Management System 1.0 - Stack-Based Buffer Overflow in Available Room Handler
CVSS 5.3
CVE-2024-12185 MEDIUM
code-projects Hotel Management System 1.0 - Stack-Based Buffer Overflow in Administrator Login Password Handler
CVSS 5.3
CVE-2024-12147 MEDIUM
Netgear R6900 1.0.1.26_1.0.20 - Buffer Overflow
CVSS 6.5
CVE-2024-43053 HIGH
Qualcomm FastConnect and QCA2062/2064/2065 Firmware - Memory Corruption via IOCTL
CVSS 7.8
CVE-2024-43049 HIGH
Qualcomm FastConnect and WLAN Driver - Memory Corruption via IOCTL
CVSS 7.8
CVE-2024-11960 HIGH
D-Link DIR-605L 2.13B01 - Buffer Overflow
CVSS 8.8
CVE-2024-11959 HIGH
D-Link DIR-605L 2.13B01 - Buffer Overflow
CVSS 8.8
CVE-2024-11745 HIGH
Tenda AC8 16.03.34.09 - Buffer Overflow
CVSS 8.8
CVE-2024-9739 HIGH
Tungsten Automation Power PDF < 5.1 - Remote Code Execution via PDF File Parsing
CVSS 7.8
CVE-2024-9738 HIGH
Tungsten Automation Power PDF < 5.1 - Remote Code Execution via PDF File Parsing
CVSS 7.8
CVE-2024-9731 HIGH
Trimble SketchUp Viewer - Remote Code Execution via SKP File Parsing Memory Corruption
CVSS 7.8
CVE-2024-9730 HIGH
Trimble SketchUp Viewer - Remote Code Execution via SKP File Parsing
CVSS 7.8
CVE-2024-8815 HIGH
PDF-XChange Editor - Remote Code Execution via U3D File Parsing
CVSS 7.8
CVE-2024-11575 HIGH
IrfanView - Remote Code Execution via DXF File Parsing Memory Corruption
CVSS 7.8
CVE-2024-11574 HIGH
IrfanView - Remote Code Execution via DXF File Parsing Memory Corruption
CVSS 7.8
CVE-2024-11573 HIGH
IrfanView - Remote Code Execution via DXF File Parsing Memory Corruption
CVSS 7.8
CVE-2024-11572 HIGH
IrfanView - Remote Code Execution via DXF File Parsing Memory Corruption
CVSS 7.8
CVE-2024-11564 HIGH
IrfanView - Remote Code Execution via DWG File Parsing Memory Corruption
CVSS 7.8
Details
Vulnerabilities 13,962
Exploit Likelihood High