CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,199 vulnerabilities with CWE-120
CVE-2025-10792 HIGH
D-Link DIR-513 A1FW110 - Buffer Overflow via formWPS webpage Argument
CVSS 8.8
CVE-2025-10757 HIGH
UTT 1200GW Firmware < 3.0.0-170831 - Buffer Overflow via GroupName Argument in formConfigDnsFilterGlobal
CVSS 8.8
CVE-2025-10756 HIGH
UTT HiPER 840G < 3.1.1-190328 - Buffer Overflow via getOneApConfTempEntry tempName Parameter
CVSS 8.8
CVE-2025-10666 HIGH
D-Link DIR-825 Firmware < 2.10 - Buffer Overflow via apply.cgi countdown_time Argument
CVSS 8.8
CVE-2025-43370 MEDIUM
Xcode < 26.0 - Denial of Service via Path Handling Issue
CVSS 4.0
CVE-2025-43312 MEDIUM
macOS < 14.8, < 15.7, < 26 - Denial of Service via Buffer Overflow
CVSS 5.5
CVE-2025-10443 HIGH
Tenda AC9 and AC15 15.03.05.14/15.03.05.18 - Buffer Overflow via formexeCommand
CVSS 8.8
CVE-2025-10385 HIGH
Mercury KM08-708H GiGA WiFi Wave2 1.1 - Buffer Overflow
CVSS 8.8
CVE-2025-57573 MEDIUM
Tenda F3 Firmware V12.01.01.48_multi and after - Buffer Overflow via wifiTimeClose Parameter
CVSS 5.6
CVE-2025-57572 MEDIUM
Tenda F3 Firmware V12.01.01.48_multi and after - Buffer Overflow via onlineList Parameter
CVSS 5.6
CVE-2025-57571 MEDIUM
Tenda F3 Firmware V12.01.01.48_multi and after - Buffer Overflow via macFilterList Parameter
CVSS 5.6
CVE-2025-57570 MEDIUM
Tenda F3 Firmware V12.01.01.48_multi and after - Buffer Overflow via QosList Parameter
CVSS 5.6
CVE-2025-57569 MEDIUM
Tenda F3 Firmware V12.01.01.48_multi and after - Buffer Overflow via portList Parameter
CVSS 5.6
CVE-2025-10172 HIGH
UTT 750W Firmware < 3.2.2-191225 - Buffer Overflow via formPictureUrl importpictureurl Parameter
CVSS 8.8
CVE-2025-49458 MEDIUM
Zoom Meeting SDK < 6.5.0 - Authenticated Denial of Service via Buffer Overflow
CVSS 6.5
CVE-2025-10171 HIGH
UTT 1250GW Firmware < 3.2.2-200710 - Buffer Overflow in formConfigApConfTemp
CVSS 8.8
CVE-2025-10170 HIGH
UTT 1200GW Firmware < 3.0.0-170831 - Buffer Overflow via loadBalanceNameOld Argument
CVSS 8.8
CVE-2025-10169 HIGH
UTT 1200GW Firmware < 3.0.0-170831 - Buffer Overflow via ConfigWirelessBase SSID Parameter
CVSS 8.8
CVE-2025-10120 HIGH
Tenda AC20 Firmware < 16.03.08.12 - Buffer Overflow via Parent Control MAC Parameter
CVSS 8.8
CVE-2025-39727 HIGH
Linux Kernel 6.12-6.12.41, 6.13-6.15.9, 6.16 - Buffer Overflow in setup_clusters()
CVSS 7.8
CVE-2025-10034 HIGH
D-Link DIR-825 1.08.01 - Buffer Overflow in ping6_response.cg via ping6_ipaddr
CVSS 8.8
CVE-2025-9961 HIGH
TP-Link AX10 and AX1500 CWMP - Man-in-the-Middle Code Execution
CVE-2025-26434 MEDIUM
Android libxml2 - Buffer Overflow Leading to Local Information Disclosure
CVSS 5.5
CVE-2025-9813 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via samba_userNameSda Parameter
CVSS 8.8
CVE-2025-9812 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via formexeCommand cmdinput Argument
CVSS 8.8
Details
Vulnerabilities 4,199
Exploit Likelihood High