CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,199 vulnerabilities with CWE-120
CVE-2025-64182 HIGH
OpenEXR 3.2.0-3.2.4 3.3.0-3.3.5 3.4.0-3.4.2 - Heap Overflow via Legacy Python InputFile Wrapper
CVSS 7.8
CVE-2025-12440 MEDIUM
Google Chrome < 142.0.7444.59 - Information Disclosure in Autofill via Crafted HTML Page
CVSS 5.3
CVE-2025-12622 HIGH
Tenda AC10 16.03.10.13 - Buffer Overflow
CVSS 8.8
CVE-2025-12619 HIGH
Tenda A15 15.13.07.13 - Buffer Overflow
CVSS 8.8
CVE-2025-12618 HIGH
Tenda AC8 16.03.34.06 - Buffer Overflow
CVSS 8.8
CVE-2025-12611 HIGH
Tenda AC21 16.03.08.16 - Buffer Overflow
CVSS 8.8
CVE-2025-12596 HIGH
Tenda AC23 16.03.07.52 - Buffer Overflow
CVSS 8.8
CVE-2025-12595 HIGH
Tenda AC23 16.03.07.52 - Buffer Overflow
CVSS 8.8
CVE-2025-12142 MEDIUM
ABB Terra AC <1.8.33 - Buffer Overflow
CVSS 6.1
CVE-2025-33131 MEDIUM
IBM DB2 High Performance Unload <6.5 - Buffer Overflow
CVSS 6.5
CVE-2025-12322 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow in fromNatStaticSetting via Page Parameter
CVSS 8.8
CVE-2025-12274 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via P2pListFilter Page Parameter
CVSS 8.8
CVE-2025-12273 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via webExcptypemanFilter Page Parameter
CVSS 8.8
CVE-2025-12272 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via AddressNat Page Parameter
CVSS 8.8
CVE-2025-12271 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via RouteStatic Page Argument
CVSS 8.8
CVE-2025-12265 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via VirtualSer Page Parameter
CVSS 8.8
CVE-2025-12240 HIGH
TOTOLINK A3300R 17.0.0cu.557_B20221024 - Buffer Overflow via setDmzCfg IP Parameter
CVSS 8.8
CVE-2025-12239 HIGH
TOTOLINK A3300R 17.0.0cu.557_B20221024 - Buffer Overflow in setDdnsCfg Function
CVSS 8.8
CVE-2025-12236 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via DhcpListClient Page Parameter
CVSS 8.8
CVE-2025-12235 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow in SetIpBind Function via Page Argument
CVSS 8.0
CVE-2025-12234 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via SafeMacFilter Page Parameter
CVSS 8.8
CVE-2025-12233 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow in SafeUrlFilter via Page Argument
CVSS 8.8
CVE-2025-12232 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow in SafeClientFilter via Page Argument
CVSS 8.8
CVE-2025-60554 CRITICAL
D-Link DIR600L Ax - Buffer Overflow
CVSS 9.8
CVE-2025-60553 CRITICAL
D-Link DIR600L Ax - Buffer Overflow
CVSS 9.8
Details
Vulnerabilities 4,199
Exploit Likelihood High