CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,198 vulnerabilities with CWE-120
CVE-2026-7749 HIGH
Totolink N300RH POST Request cstecgi.cgi setWanConfig buffer overflow
CVSS 8.8
CVE-2026-7748 HIGH
Totolink N300RH POST Request cstecgi.cgi setUpgradeFW buffer overflow
CVSS 8.8
CVE-2026-7747 CRITICAL
Totolink N300RH Parameter cstecgi.cgi loginauth buffer overflow
CVSS 9.8
CVE-2026-20449 MEDIUM
MediaTek chipset - Remote Denial of Service via Heap Buffer Overflow in Modem
CVSS 6.5
CVE-2026-7735 HIGH
osrg GoBGP AIGP Attribute bgp.go PathAttributeAigp.DecodeFromBytes buffer overflow
CVSS 7.3
CVE-2026-7719 CRITICAL
Totolink WA300 POST Request cstecgi.cgi loginauth buffer overflow
CVSS 9.8
CVE-2026-7717 HIGH
Totolink WA300 POST Request cstecgi.cgi UploadCustomModule buffer overflow
CVSS 8.8
CVE-2026-7685 HIGH
Edimax BR-6208AC setWAN buffer overflow
CVSS 8.8
CVE-2026-7684 HIGH
Edimax BR-6428nC setWAN buffer overflow
CVSS 8.8
CVE-2026-7675 HIGH
Shenzhen Libituo Technology LBT-T300-HW1 apply.cgi start_lan buffer overflow
CVSS 8.8
CVE-2026-7674 HIGH
Shenzhen Libituo Technology LBT-T300-HW1 Web Management start_single_service buffer overflow
CVSS 8.8
CVE-2026-7607 HIGH
TRENDnet TEW-821DAP Firmware Udpate auto_update_firmware buffer overflow
CVSS 8.8
CVE-2026-7513 HIGH
UTT HiPER 1200GW formRemoteControl strcpy buffer overflow
CVSS 8.8
CVE-2026-7512 HIGH
UTT HiPER 1200GW formUser strcpy buffer overflow
CVSS 8.8
CVE-2026-5404 MEDIUM
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') in Wireshark
CVSS 4.7
CVE-2026-7503 HIGH
code-projects for Plugin cstecgi.cgi setWiFiMultipleConfig buffer overflow
CVSS 8.8
CVE-2026-33446 CRITICAL
Buffer overflow in client authentication prior to version 14.50
CVSS 9.8
CVE-2026-7420 HIGH
UTT HiPER 1250GW ConfigAdvideo strcpy buffer overflow
CVSS 8.8
CVE-2026-7419 HIGH
UTT HiPER 1250GW formTaskEdit_ap strcpy buffer overflow
CVSS 8.8
CVE-2026-7418 HIGH
UTT HiPER 1250GW NTP strcpy buffer overflow
CVSS 8.8
CVE-2026-7321 CRITICAL
Sandbox escape due to incorrect boundary conditions in the WebRTC: Networking component
CVSS 9.6
CVE-2026-7289 HIGH
D-Link DIR-825M formWanConfigSetup sub_414BA8 buffer overflow
CVSS 8.8
CVE-2026-7288 HIGH
D-Link DIR-825M formVpnConfigSetup sub_4151FC buffer overflow
CVSS 8.8
CVE-2026-7248 CRITICAL
D-Link DI-8100 CGI Endpoint tgfile.htm tgfile_htm buffer overflow
CVSS 9.8
CVE-2026-7247 HIGH
D-Link DI-8100 File Extension file_exten.asp file_exten_asp buffer overflow
CVSS 7.2
Details
Vulnerabilities 4,198
Exploit Likelihood High