CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,216 vulnerabilities with CWE-120
CVE-2025-4848 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow in RECV Command Handler
CVSS 7.3
CVE-2025-4847 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow in MLS Command Handler
CVSS 7.3
CVE-2025-4846 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow via MPUT Command Handler
CVSS 7.3
CVE-2025-4845 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow via TRACE Command Handler
CVSS 7.3
CVE-2025-4844 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow via CD Command Handler
CVSS 7.3
CVE-2025-4835 HIGH
TOTOLINK A702R, A3002R, A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via Redirect-URL Parameter
CVSS 8.8
CVE-2025-4834 HIGH
TOTOLINK A702R, A3002R, A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-4833 HIGH
TOTOLINK A702R, A3002R, and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via NTP Form POST Request
CVSS 8.8
CVE-2025-4832 HIGH
TOTOLINK A702R, A3002R, and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-4831 HIGH
TOTOLINK A702R, A3002R, and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via Site Survey Profile POST Request
CVSS 8.8
CVE-2025-4830 HIGH
TOTOLINK A702R, A3002R, and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-4829 HIGH
TOTOLINK A702R, A3002R, A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-4827 HIGH
TOTOLINK A702R, A3002R, and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-4826 HIGH
TOTOLINK A702R, A3002R, A3002RU 3.0.0-B20230809.1615 - Buffer Overflow
CVSS 8.8
CVE-2025-4825 HIGH
TOTOLINK A702R, A3002R, A3002RU 3.0.0-B20230809.1615 - Buffer Overflow
CVSS 8.8
CVE-2025-4824 HIGH
TOTOLINK A702R, A3002R, A3002RU 3.0.0-B20230809.1615 - Buffer Overflow
CVSS 8.8
CVE-2025-4823 HIGH
TOTOLINK A702R, A3002R, A3002RU 3.0.0-B20230809.1615 - Buffer Overflow
CVSS 8.8
CVE-2025-4792 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow via MDELETE Command Handler
CVSS 7.3
CVE-2025-4791 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow in HASH Command Handler
CVSS 7.3
CVE-2025-4790 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow in GLOB Command Handler
CVSS 7.3
CVE-2025-4789 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow in LCD Command Handler
CVSS 7.3
CVE-2025-4788 HIGH
FreeFloat FTP Server 1.0 - Buffer Overflow via DELETE Command Handler
CVSS 7.3
CVE-2025-4733 HIGH
TOTOLINK A3002R and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler mac Argument
CVSS 8.8
CVE-2025-4732 HIGH
TOTOLINK A3002R and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-4731 HIGH
TOTOLINK A3002R and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
Details
Vulnerabilities 4,216
Exploit Likelihood High