CWE-121

High likelihood

Stack-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

3,424 vulnerabilities with CWE-121
CVE-2023-23569 HIGH
Intel Trace Analyzer and Collector < 2021.8.0 - Authenticated Stack-based Buffer Overflow
CVSS 7.8
CVE-2023-2575 HIGH
Advantech EKI-1521/1522/1524 <1.21 Authenticated Stack Overflow via POST
CVSS 8.8
CVE-2023-29583 MEDIUM
yasm 1.3.0.55.g101bc - Stack-based Buffer Overflow in parse_expr5
CVSS 5.5
CVE-2023-27355 HIGH
Sonos One Firmware 70.3-35220 - Unauthenticated Stack-based Buffer Overflow in MPEG-TS Parser
CVSS 8.8
CVE-2023-27910 HIGH
Autodesk FBX SDK 2020.0-2020.3.4 - Stack-based Buffer Overflow via Malicious FBX File
CVSS 7.8
CVE-2023-27914 HIGH
AutoCAD 2023 < 2023.1.3 - Stack-based Buffer Overflow via Malicious X_B File
CVSS 7.8
CVE-2023-26412 HIGH
Adobe Substance 3D Designer <12.4.0 - RCE
CVSS 7.8
CVE-2023-26390 HIGH
Adobe Substance 3D Stager <2.0.1 - Buffer Overflow
CVSS 7.8
CVE-2023-26383 HIGH
Adobe Substance 3D Stager <2.0.1 - RCE
CVSS 7.8
CVE-2023-26337 HIGH
Adobe Dimension <3.4.7 - Buffer Overflow
CVSS 7.8
CVE-2023-1646 MEDIUM
IObit Malware Fighter 9.4.0.776 - Buffer Overflow
CVSS 5.3
CVE-2023-27590 HIGH
rizin < 0.5.1 - Stack-based Buffer Overflow via GDB Register Profile Conversion
CVSS 7.8
CVE-2023-27406 HIGH
Siemens Tecnomatix Plant Simulation < 2201.0006 - Stack-based Buffer Overflow via SPP File Parsing
CVSS 7.8
CVE-2023-27404 HIGH
Siemens Tecnomatix Plant Simulation < 2201.0006 - Stack-based Buffer Overflow via SPP File Parsing
CVSS 7.8
CVE-2023-27498 HIGH
SAP Host Agent 7.22 - Unauthenticated Stack-based Buffer Overflow via Crafted Request
CVSS 7.2
CVE-2023-0330 MEDIUM
qemu 7.2.0-7.2.2 - Stack-based Buffer Overflow in lsi53c895a Device
CVSS 5.3
CVE-2023-20079 CRITICAL
Cisco IP Phone Firmware < 11.3.7sr1 - Unauthenticated Remote Code Execution or Denial of Service
CVSS 9.8
CVE-2023-20078 CRITICAL
Cisco IP Phone Firmware < 11.3.7sr1 - Unauthenticated Remote Code Execution or Denial of Service
CVSS 9.8
CVE-2023-0656 HIGH
SonicOS < 7.0.1-5111 - Unauthenticated Denial of Service via Stack-based Buffer Overflow
CVSS 7.5
CVE-2023-22243 HIGH
Adobe Animate <22.0.8, 23.0.0 - RCE
CVSS 7.8
CVE-2023-22234 HIGH
Adobe Premiere Rush < 2.6 - Stack-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2023-22226 HIGH
Adobe Bridge < 12.0.4 and <= 13.0.1 - Stack-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2023-25602 HIGH
FortiWeb 5.6.0-6.4.0 Stack-based Buffer Overflow via Command Arguments
CVSS 7.8
CVE-2023-23781 MEDIUM
FortiWeb 6.3.0-6.3.19, 6.4, <=7.0.1 - Authenticated Stack-based Buffer Overflow via SAML XML Configuration
CVSS 6.4
CVE-2023-23780 HIGH
FortiWeb 6.3.6-6.3.19, 6.4, 7.0.0-7.0.1 - Stack-based Buffer Overflow via Crafted HTTP Requests
CVSS 8.0
Details
Vulnerabilities 3,424
Exploit Likelihood High