CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,216 vulnerabilities with CWE-120
CVE-2025-5788 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via submit-url Parameter
CVSS 8.8
CVE-2025-5787 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-5786 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-5785 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-5739 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-5738 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-5737 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-5736 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via NTP Form POST Request
CVSS 8.8
CVE-2025-5735 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-5734 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via Redirect-URL Parameter
CVSS 8.8
CVE-2025-5672 HIGH
TOTOLINK N302R Plus < 3.4.0-b20201028 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-5671 HIGH
TOTOLINK N302R Plus < 3.4.0-b20201028 - Buffer Overflow via service_type Parameter
CVSS 8.8
CVE-2025-5667 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow in REIN Command Handler
CVSS 7.3
CVE-2025-5666 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow via XMKD Command Handler
CVSS 7.3
CVE-2025-5665 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow via XCWD Command Handler
CVSS 7.3
CVE-2025-5664 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow via RESTART Command Handler
CVSS 7.3
CVE-2025-5637 HIGH
PCMan FTP Server < 2.0.7 - Buffer Overflow in SYSTEM Command Handler
CVSS 7.3
CVE-2025-5636 HIGH
PCMan FTP Server < 2.0.7 - Buffer Overflow via SET Command Handler
CVSS 7.3
CVE-2025-5635 HIGH
PCMan FTP Server 2.0.7 - Buffer Overflow in PLS Command Handler
CVSS 7.3
CVE-2025-5634 HIGH
PCMan FTP Server 2.0.7 - Buffer Overflow via NOOP Command Handler
CVSS 7.3
CVE-2025-5629 HIGH
Tenda AC10 Firmware < 15.03.06.47 - Buffer Overflow via SetPptpServerCfg startIp/endIp Parameters
CVSS 8.8
CVE-2025-5609 HIGH
Tenda AC18 15.03.05.05 - Buffer Overflow via fromadvsetlanip lanMask Parameter
CVSS 8.8
CVE-2025-5608 HIGH
Tenda AC18 15.03.05.05 - Buffer Overflow via formsetreboottimer rebootTime Parameter
CVSS 8.8
CVE-2025-5607 HIGH
Tenda AC18 15.03.05.05 - Buffer Overflow in formSetPPTPUserList via list Argument
CVSS 8.8
CVE-2025-5596 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow
CVSS 7.3
Details
Vulnerabilities 4,216
Exploit Likelihood High