CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,086 vulnerabilities with CWE-120
CVE-2025-27072 MEDIUM
Qualcomm Invalid EAVB Header Firmware - Information Disclosure
CVSS 5.5
CVE-2025-27071 HIGH
Powerline Comm. Firmware - Memory Corruption
CVSS 7.3
CVE-2025-54642 MEDIUM
Huawei Emui - Improper Input Validation
CVSS 6.7
CVE-2025-54641 MEDIUM
Huawei Emui - Improper Input Validation
CVSS 6.7
CVE-2025-54632 MEDIUM
Huawei Emui - Buffer Overflow
CVSS 6.8
CVE-2025-5038 HIGH
Autodesk - Memory Corruption
CVSS 7.8
CVE-2025-53713 HIGH
TP-Link TL-WR841N V11 - Buffer Overflow
CVSS 7.5
CVE-2025-53712 HIGH
TP-Link TL-WR841N V11 - Buffer Overflow
CVSS 7.5
CVE-2025-53711 HIGH
TP-Link TL-WR841N V11 - Buffer Overflow
CVSS 7.5
CVE-2025-8246 HIGH
Totolink X15 Firmware - Memory Corruption
CVSS 8.8
CVE-2025-8245 HIGH
Totolink X15 Firmware - Memory Corruption
CVSS 8.8
CVE-2025-8244 HIGH
Totolink X15 Firmware - Command Injection
CVSS 8.8
CVE-2025-8243 HIGH
Totolink X15 Firmware - Out-of-Bounds Write
CVSS 8.8
CVE-2025-8242 HIGH
Totolink X15 Firmware - Memory Corruption
CVSS 8.8
CVE-2025-8180 HIGH
Tenda Ch22 Firmware - Memory Corruption
CVSS 8.8
CVE-2025-8177 MEDIUM
Libtiff < 4.7.0 - Memory Corruption
CVSS 5.3
CVE-2025-8170 HIGH
Totolink T6 Firmware - Memory Corruption
CVSS 8.8
CVE-2025-8169 HIGH
Dlink Dir-513 Firmware - Out-of-Bounds Write
CVSS 8.8
CVE-2025-8168 HIGH
Dlink Dir-513 Firmware - Out-of-Bounds Write
CVSS 8.8
CVE-2025-8160 HIGH
Tenda Ac20 Firmware - Memory Corruption
CVSS 8.8
CVE-2025-8140 HIGH
Totolink A702r Firmware - Memory Corruption
CVSS 8.8
CVE-2025-8139 HIGH
Totolink A702r Firmware - Memory Corruption
CVSS 8.8
CVE-2025-8138 HIGH
Totolink A702r Firmware - Memory Corruption
CVSS 8.8
CVE-2025-8137 HIGH
Totolink A702r Firmware - Memory Corruption
CVSS 8.8
CVE-2025-8136 HIGH
Totolink A702r Firmware - Memory Corruption
CVSS 8.8
Details
Vulnerabilities 4,086
Exploit Likelihood High