CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,198 vulnerabilities with CWE-120
CVE-2026-9295 HIGH
Edimax BR-6428NS POST Request formWirelessTbl buffer overflow
CVSS 8.8
CVE-2026-9294 HIGH
Edimax BR-6428NS POST Request formWanTcpipSetup buffer overflow
CVSS 8.8
CVE-2026-36228 HIGH
Easy Chat Server 3.1 - Buffer Overflow via Chat Message Functionality
CVSS 7.3
CVE-2026-36189 MEDIUM
Uncrustify Project - Buffer Overflow in check_template.cpp
CVSS 6.2
CVE-2026-8776 HIGH
Edimax BR-6428NS POST Request formPPTPSetup buffer overflow
CVSS 8.8
CVE-2026-8775 HIGH
Edimax BR-6428NS POST Request formL2TPSetup buffer overflow
CVSS 8.8
CVE-2026-8764 HIGH
H3C Magic B3 aspForm UpdateWanParams buffer overflow
CVSS 7.2
CVE-2026-40067 HIGH
F5 BIG-IP APM - apmd Denial of Service
CVSS 7.5
CVE-2026-20794 CRITICAL
Intel(R) Data Center Graphics Driver For VMware ESXi Software - Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CVE-2026-20782 MEDIUM
Intel(R) Qat Software Drivers For Windows - Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CVSS 6.6
CVE-2026-7287 HIGH
Zyxel NWA1100-N Firmware - Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CVSS 7.5
CVE-2026-39869 MEDIUM
iOS and iPadOS < 18.7.9 - Denial of Service via Malicious Audio Stream
CVSS 4.3
CVE-2026-28959 HIGH
iOS and iPadOS < 18.7.9 - Buffer Overflow
CVSS 7.5
CVE-2026-28925 HIGH
macOS < 14.8.7, < 15.7.7, < 26.5 - Buffer Overflow
CVSS 7.5
CVE-2026-42859 HIGH
Neat VNC: Buffer overflow due to oversized RSA public keys
CVE-2026-8260 HIGH
D-Link DCS-935L HNAP Service hnap_service SetDeviceSettings buffer overflow
CVSS 8.8
CVE-2026-8137 HIGH
Totolink X5000R formDdns sub_458E40 buffer overflow
CVSS 8.8
CVE-2026-6691 HIGH
MongoDB C Driver Cyrus SASL Canonicalization Buffer Overflow
CVSS 7.8
CVE-2026-7857 HIGH
D-Link DI-8100 CGI user_group.asp sprintf buffer overflow
CVSS 7.2
CVE-2026-7856 HIGH
D-Link DI-8100 Web Management url_member.asp buffer overflow
CVSS 7.2
CVE-2026-7855 HIGH
D-Link DI-8100 HTTP Request tggl.asp tggl_asp buffer overflow
CVSS 8.8
CVE-2026-7854 CRITICAL
D-Link DI-8100 POST Parameter url_rule.asp url_rule_asp buffer overflow
CVSS 9.8
CVE-2026-7853 CRITICAL
D-Link DI-8100 HTTP auto_reboot.asp sprintf buffer overflow
CVSS 9.8
CVE-2026-34956 MEDIUM
Openvswitch: open vswitch: denial of service via malformed ftp epasv command
CVSS 5.9
CVE-2026-7750 HIGH
Totolink N300RH POST Request cstecgi.cgi setMacFilterRules buffer overflow
CVSS 8.8
Details
Vulnerabilities 4,198
Exploit Likelihood High