CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,216 vulnerabilities with CWE-120
CVE-2025-50610 HIGH
Netis WF2880 v2.1.40207 - Buffer Overflow
CVSS 7.5
CVE-2025-50609 HIGH
Netis WF2880 v2.1.40207 - Buffer Overflow
CVSS 7.5
CVE-2025-50608 HIGH
Netis WF2880 v2.1.40207 - Buffer Overflow
CVSS 7.5
CVE-2025-8760 CRITICAL
INSTAR 2K+/4K <3.11.1.1124 - Buffer Overflow
CVSS 9.8
CVE-2025-7677 MEDIUM
ABB Aspect - Denial of Service via Buffer Overflow
CVSS 5.9
CVE-2025-51824 MEDIUM
libcsp 2.0 - Buffer Overflow in csp_usart_open()
CVSS 6.5
CVE-2025-51823 MEDIUM
libcsp 2.0 - Buffer Overflow in csp_eth_init() via ifname Parameter
CVSS 6.5
CVE-2025-8854 CRITICAL
PyBullet < 3.25 - Remote Code Execution via Crafted OFF File
CVSS 9.8
CVE-2025-8736 MEDIUM
GNU cflow < 1.8 - Buffer Overflow in Lexer yylex Function
CVSS 5.3
CVE-2025-6634 HIGH
Autodesk 3ds Max 2026-2026.2 - Memory Corruption via Malicious TGA File
CVSS 7.8
CVE-2025-27072 MEDIUM
Qualcomm Invalid EAVB Header Firmware - Information Disclosure
CVSS 5.5
CVE-2025-27071 HIGH
Powerline Comm. Firmware - Memory Corruption
CVSS 7.3
CVE-2025-54642 MEDIUM
Huawei EMUI and HarmonyOS - Denial of Service via Kernel Gyroscope Module Buffer Overflow
CVSS 6.7
CVE-2025-54641 MEDIUM
Huawei EMUI and HarmonyOS - Denial of Service via Kernel Acceleration Module Buffer Overflow
CVSS 6.7
CVE-2025-54632 MEDIUM
Huawei EMUI - Buffer Overflow in HVB Module
CVSS 6.8
CVE-2025-5038 HIGH
Autodesk Shared Components 1.6.2.11-1.7.0.9 - Memory Corruption via Malicious X_T File
CVSS 7.8
CVE-2025-53713 HIGH
TP-Link TL-WR841N V11 - Buffer Overflow
CVSS 7.5
CVE-2025-53712 HIGH
TP-Link TL-WR841N V11 - Buffer Overflow
CVSS 7.5
CVE-2025-53711 HIGH
TP-Link TL-WR841N V11 - Buffer Overflow
CVSS 7.5
CVE-2025-8246 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-8245 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via formMultiAPVLAN submit-url Parameter
CVSS 8.8
CVE-2025-8244 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via formMapDelDevice macstr Parameter
CVSS 8.8
CVE-2025-8243 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via devicemac1 Parameter
CVSS 8.8
CVE-2025-8242 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-8180 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via old_account Parameter in deleteUserName
CVSS 8.8
Details
Vulnerabilities 4,216
Exploit Likelihood High