CWE-120
High likelihoodBuffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Parent: CWE-787 - Out-of-bounds Write
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.
4,198 vulnerabilities with CWE-120
CVE-2026-9295
HIGH
Edimax BR-6428NS POST Request formWirelessTbl buffer overflow
CVSS 8.8
CVE-2026-9294
HIGH
Edimax BR-6428NS POST Request formWanTcpipSetup buffer overflow
CVSS 8.8
CVE-2026-36228
HIGH
Easy Chat Server 3.1 - Buffer Overflow via Chat Message Functionality
CVSS 7.3
CVE-2026-36189
MEDIUM
Uncrustify Project - Buffer Overflow in check_template.cpp
CVSS 6.2
CVE-2026-8776
HIGH
Edimax BR-6428NS POST Request formPPTPSetup buffer overflow
CVSS 8.8
CVE-2026-8775
HIGH
Edimax BR-6428NS POST Request formL2TPSetup buffer overflow
CVSS 8.8
CVE-2026-8764
HIGH
H3C Magic B3 aspForm UpdateWanParams buffer overflow
CVSS 7.2
CVE-2026-40067
HIGH
F5 BIG-IP APM - apmd Denial of Service
CVSS 7.5
CVE-2026-20794
CRITICAL
Intel(R) Data Center Graphics Driver For VMware ESXi Software - Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CVE-2026-20782
MEDIUM
Intel(R) Qat Software Drivers For Windows - Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CVSS 6.6
CVE-2026-7287
HIGH
Zyxel NWA1100-N Firmware - Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CVSS 7.5
CVE-2026-39869
MEDIUM
iOS and iPadOS < 18.7.9 - Denial of Service via Malicious Audio Stream
CVSS 4.3
CVE-2026-28959
HIGH
iOS and iPadOS < 18.7.9 - Buffer Overflow
CVSS 7.5
CVE-2026-28925
HIGH
macOS < 14.8.7, < 15.7.7, < 26.5 - Buffer Overflow
CVSS 7.5
CVE-2026-42859
HIGH
Neat VNC: Buffer overflow due to oversized RSA public keys
CVE-2026-8260
HIGH
D-Link DCS-935L HNAP Service hnap_service SetDeviceSettings buffer overflow
CVSS 8.8
CVE-2026-8137
HIGH
Totolink X5000R formDdns sub_458E40 buffer overflow
CVSS 8.8
CVE-2026-6691
HIGH
MongoDB C Driver Cyrus SASL Canonicalization Buffer Overflow
CVSS 7.8
CVE-2026-7857
HIGH
D-Link DI-8100 CGI user_group.asp sprintf buffer overflow
CVSS 7.2
CVE-2026-7856
HIGH
D-Link DI-8100 Web Management url_member.asp buffer overflow
CVSS 7.2
CVE-2026-7855
HIGH
D-Link DI-8100 HTTP Request tggl.asp tggl_asp buffer overflow
CVSS 8.8
CVE-2026-7854
CRITICAL
D-Link DI-8100 POST Parameter url_rule.asp url_rule_asp buffer overflow
CVSS 9.8
CVE-2026-7853
CRITICAL
D-Link DI-8100 HTTP auto_reboot.asp sprintf buffer overflow
CVSS 9.8
CVE-2026-34956
MEDIUM
Openvswitch: open vswitch: denial of service via malformed ftp epasv command
CVSS 5.9
CVE-2026-7750
HIGH
Totolink N300RH POST Request cstecgi.cgi setMacFilterRules buffer overflow
CVSS 8.8
Details
Vulnerabilities
4,198
Exploit Likelihood
High