CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,216 vulnerabilities with CWE-120
CVE-2025-6165 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via submit-url Parameter
CVSS 8.8
CVE-2025-6164 HIGH
TOTOLINK A3002R 4.0.0-B20230531.1404 - Buffer Overflow via submit-url Parameter in MultiAP Form Handler
CVSS 8.8
CVE-2025-6163 HIGH
TOTOLINK A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via submit-url Parameter
CVSS 8.8
CVE-2025-6162 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via submit-url Parameter in /boafrm/formMultiAP
CVSS 8.8
CVE-2025-6151 HIGH
TP-Link TL-WR940N V4 and TL-WR841N V11 - Buffer Overflow in WanSlaacCfgRpm.htm
CVE-2025-6150 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via submit-url Parameter
CVSS 8.8
CVE-2025-6149 HIGH
TOTOLINK A3002R 4.0.0-B20230531.1404 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6148 HIGH
TOTOLINK A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6147 HIGH
TOTOLINK A702R 4.0.0-B20230721.1521 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6146 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6145 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6144 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6143 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via NTP Form POST Request
CVSS 8.8
CVE-2025-6138 HIGH
TOTOLINK T10 4.1.8cu.5207 - Buffer Overflow via setWizardCfg ssid5g Argument
CVSS 8.8
CVE-2025-6137 HIGH
TOTOLINK T10 4.1.8cu.5207 - Buffer Overflow via setWiFiScheduleCfg desc Parameter
CVSS 8.8
CVE-2025-6130 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6129 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6128 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via Wireless Table POST Request
CVSS 8.8
CVE-2025-6113 HIGH
Tenda FH1203 2.0.1.6 - Buffer Overflow via fromadvsetlanip lanMask Parameter
CVSS 8.8
CVE-2025-6112 HIGH
Tenda FH1205 2.0.0.7 - Buffer Overflow via fromadvsetlanip lanMask Parameter
CVSS 8.8
CVE-2025-6098 CRITICAL
UTT 750W < 5.0 - Buffer Overflow via API passwd1 Parameter
CVSS 9.8
CVE-2025-6091 HIGH
H3C GR-3000AX V100R007L50 - Buffer Overflow
CVSS 8.8
CVE-2025-6090 HIGH
H3C GR-5400AX V100R009L50 - Buffer Overflow
CVSS 8.8
CVE-2025-46060 CRITICAL
TOTOLINK N600R v4.3.0cu.7866_B2022506 - Buffer Overflow via UPLOAD_FILENAME
CVSS 9.8
CVE-2025-46035 HIGH
Tenda AC6 15.03.05.16 Buffer Overflow via Oversized schedStartTime/schedEndTime
CVSS 7.5
Details
Vulnerabilities 4,216
Exploit Likelihood High