CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,100 vulnerabilities with CWE-120
CVE-2023-0970 HIGH
Silabs Z/ip Gateway SDK < 7.18.01 - Out-of-Bounds Write
CVSS 7.1
CVE-2023-34563 CRITICAL
Netgear R6250 Firmware - Buffer Overflow
CVSS 9.8
CVE-2023-35856 CRITICAL
Nintendo Mario Kart Wii - Buffer Overflow
CVSS 9.8
CVE-2023-35855 CRITICAL
Valvesoftware Counter-strike < 8684 - Buffer Overflow
CVSS 9.8
CVE-2023-34832 CRITICAL
Tp-link Archer Ax10 Firmware - Buffer Overflow
CVSS 9.8
CVE-2023-2686 CRITICAL
Silicon Labs Gecko SDK <4.2.3 - Buffer Overflow
CVSS 9.8
CVE-2023-21143 MEDIUM
Google Android - Improper Input Validation
CVSS 5.5
CVE-2023-21136 MEDIUM
Google Android - Improper Input Validation
CVSS 5.5
CVE-2023-21135 HIGH
Google Android - Improper Input Validation
CVSS 7.8
CVE-2023-1329 CRITICAL
HP Laserjet Managed Mfp E62665 3gy14a Firmware - Buffer Overflow
CVSS 9.8
CVE-2023-25434 HIGH
Libtiff - Buffer Overflow
CVSS 8.8
CVE-2023-34115 MEDIUM
Zoom Meeting SDK <5.13.0 - DoS
CVSS 4.3
CVE-2023-32674 CRITICAL
HP PC Hardware Diagnostics < 2.2.0.0 - Buffer Overflow
CVSS 9.8
CVE-2023-34336 HIGH
AMI Megarac Sp-x < 12.7 - Buffer Overflow
CVSS 8.1
CVE-2023-33457 HIGH
Sogou Workflow <0.10.6 - Buffer Overflow
CVSS 8.8
CVE-2023-27989 MEDIUM
Zyxel Lte7480-m804 Firmware < 1.00\(abra.6\)c0 - Buffer Overflow
CVSS 6.5
CVE-2023-32181 LOW
Opensuse Libeconf < 0.5.2 - Buffer Overflow
CVSS 3.3
CVE-2023-22652 LOW
Opensuse Libeconf < 0.5.2 - Buffer Overflow
CVSS 3.3
CVE-2023-24584 HIGH
Controller 6000 <vCR8.80.230201a - Buffer Overflow
CVSS 7.5
CVE-2023-32763 HIGH
QT < 5.15.15 - Buffer Overflow
CVSS 7.5
CVE-2023-33010 CRITICAL KEV
Zyxel Atp100 Firmware < 5.36 - Buffer Overflow
CVSS 9.8
CVE-2023-33009 CRITICAL KEV
Zyxel Atp100 Firmware < 5.36 - Buffer Overflow
CVSS 9.8
CVE-2023-1424 CRITICAL
Mitsubishi Electric Corporation MELSEC iQ-F Series CPU modules - Bu...
CVSS 10.0
CVE-2023-23305 CRITICAL
Garmin Connect-iq < 4.1.7 - Buffer Overflow
CVSS 9.8
CVE-2023-23303 CRITICAL
Garmin Connect-iq < 4.1.7 - Buffer Overflow
CVSS 9.8
Details
Vulnerabilities 4,100
Exploit Likelihood High