CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,216 vulnerabilities with CWE-120
CVE-2025-8177 MEDIUM
libtiff < 4.7.0 - Buffer Overflow in setrow Function
CVSS 5.3
CVE-2025-8170 HIGH
TOTOLINK T6 4.1.5cu.748_B20211015 - Buffer Overflow in MQTT Packet Handler via tcpcheck_net serverIp Argument
CVSS 8.8
CVE-2025-8169 HIGH
D-Link DIR-513 1.10 - Buffer Overflow via formSetWanPPTPpath curTime Parameter
CVSS 8.8
CVE-2025-8168 HIGH
D-Link DIR-513 1.10 - Buffer Overflow via curTime in formSetWanPPPoE
CVSS 8.8
CVE-2025-8160 HIGH
Tenda AC20 <= 16.03.08.12 - Buffer Overflow via SetSysTimeCfg timeZone Parameter
CVSS 8.8
CVE-2025-8140 HIGH
TOTOLINK A702R 4.0.0-B20230721.1521 - Buffer Overflow via formWlanMultipleAP HTTP POST Request Handler
CVSS 8.8
CVE-2025-8139 HIGH
TOTOLINK A702R 4.0.0-B20230721.1521 - Buffer Overflow via formPortFw service_type Parameter
CVSS 8.8
CVE-2025-8138 HIGH
TOTOLINK A702R 4.0.0-B20230721.1521 - Buffer Overflow via formOneKeyAccessButton submit-url Parameter
CVSS 8.8
CVE-2025-8137 HIGH
TOTOLINK A702R 4.0.0-B20230721.1521 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-8136 HIGH
TOTOLINK A702R 4.0.0-B20230721.1521 - Buffer Overflow via formFilter ip6addr Parameter
CVSS 8.8
CVE-2025-31701 HIGH
Dahua IPC and SD Series - Buffer Overflow via Malicious Packet
CVSS 8.1
CVE-2025-31700 HIGH
Dahua IPC and SD Series - Buffer Overflow via Malicious Packet
CVSS 8.1
CVE-2025-8019 HIGH
Shenzhen Libituo Technology LBT-T300-T310 2.2.3.6 - Buffer Overflow in at/appy.cgi
CVSS 8.8
CVE-2025-7945 HIGH
D-Link DIR-513 <20190831 - Buffer Overflow
CVSS 8.8
CVE-2025-7914 HIGH
Tenda AC6 <15.03.06.50 - Buffer Overflow
CVSS 8.8
CVE-2025-7913 HIGH
TOTOLINK T6 4.1.5cu.748_B20211015 - Buffer Overflow
CVSS 8.8
CVE-2025-7912 HIGH
TOTOLINK T6 4.1.5cu.748_B20211015 - Buffer Overflow
CVSS 8.8
CVE-2025-7837 HIGH
TOTOLINK T6 4.1.5cu.748_B20211015 - Buffer Overflow
CVSS 8.8
CVE-2025-53888 CRITICAL
RIOT-OS <= 2025.04 - Buffer Overflow in l2filter_add() Function
CVSS 9.8
CVE-2025-7758 HIGH
TOTOLINK T6 <4.1.5cu.748_B20211015 - Buffer Overflow
CVSS 8.8
CVE-2025-7747 HIGH
Tenda FH451 1.0.0.9 - Buffer Overflow
CVSS 8.8
CVE-2025-51630 CRITICAL
TOTOLINK N350RT V9.3.5u.6139_B20201216 - Buffer Overflow via ePort Parameter in setIpPortFilterRules
CVSS 9.8
CVE-2025-34128 HIGH
X360 VideoPlayer <2.6 - Buffer Overflow
CVE-2025-7673 CRITICAL
Zyxel VMG8825-T50K <V5.50(ABOM.5)C0 - Buffer Overflow
CVSS 9.8
CVE-2025-34106 HIGH
PDF Shaper 3.5-3.6 - Buffer Overflow via Convert to Image Feature
Details
Vulnerabilities 4,216
Exploit Likelihood High