CWE-121

High likelihood

Stack-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

3,426 vulnerabilities with CWE-121
CVE-2017-16724 CRITICAL
Advantech WebAccess <8.3 - Buffer Overflow
CVSS 9.8
CVE-2017-3195 CRITICAL
Commvault Edge < 11 SP7 or 11 SP6 < Hotfix 590 - Stack-Based Buffer Overflow
CVSS 9.8
CVE-2017-3193 HIGH
D-Link DIR-850L Firmware 1.14B07 and 2.07.B05 - Stack-based Buffer Overflow in HNAP Service
CVSS 8.8
CVE-2017-15088 CRITICAL
MIT Kerberos 5 < 1.15.2 - Remote Code Execution via DN Field Buffer Overflow
CVSS 9.8
CVE-2017-14016 MEDIUM
Advantech WebAccess <V8.2_20170817 - Buffer Overflow
CVSS 6.3
CVE-2017-13089 HIGH
GNU Wget < 1.19.2 - Heap-Based Buffer Overflow via Negative Chunk Length
CVSS 8.8
CVE-2017-13999 CRITICAL
WECON LEVI Studio HMI Editor <1.8.1 - Buffer Overflow
CVSS 9.8
CVE-2017-12188 HIGH
Linux kernel <4.13.5 - Privilege Escalation
CVSS 7.8
CVE-2017-12732 MEDIUM
GE CIMPLICITY < 9.0 - Stack-based Buffer Overflow via Packet Length Mismatch
CVSS 6.8
CVE-2017-12706 CRITICAL
Advantech WebAccess < 8.2 - Stack-Based Buffer Overflow
CVSS 9.8
CVE-2017-12707 CRITICAL
SpiderControl SCADA MicroBrowser < 1.6.30.144 - Stack-based Buffer Overflow via Malicious HTML File
CVSS 9.8
CVE-2017-9647 MEDIUM
Continental AG Infineon S-Gold 2 - Buffer Overflow
CVSS 6.6
CVE-2017-7936 MEDIUM
NXP i.MX and Vybrid Firmware - Stack-based Buffer Overflow via SDP Download
CVSS 6.3
CVE-2017-9629 CRITICAL
Schneider-electric Wonderware Archestra Logger < 2017.426.2307.1 - Memory Corruption
CVSS 9.8
CVE-2017-7910 HIGH
Digital Canal Structural Wind Analysis 9.1 - Stack-Based Buffer Overflow
CVSS 7.5
CVE-2017-6025 CRITICAL
CODESYS Web Server < 2.3 - Stack Buffer Overflow via XML String Handling
CVSS 9.8
CVE-2017-5177 HIGH
VIPA Controls WinPLC7 <5.0.45.5921 - Buffer Overflow
CVSS 7.5
CVE-2017-6035 HIGH
Wecon Technologies LEVI Studio HMI Editor < 1.8.1 - Stack-Based Buffer Overflow via Malicious Project File
CVSS 8.8
CVE-2017-6023 CRITICAL
Fatek Ethernet Module Configuration Tool < 3.6 Build 170215 - Stack-based Buffer Overflow
CVSS 9.8
CVE-2016-5800 HIGH
Fatek Automation PM Designer <2.1.2.2 - Buffer Overflow
CVSS 7.5
CVE-2016-6563 CRITICAL
D-Link DIR Routers - Stack-Based Buffer Overflow via Malformed SOAP HNAP Login Action
CVSS 9.8
CVE-2015-1006 CRITICAL
Opto 22 PAC Project Professional < R9.4006 - Heap-Based Buffer Overflow
CVSS 9.8
CVE-2015-1007 HIGH
Opto 22 PAC Project Professional < R9.4008 - Stack-based Buffer Overflow via Crafted Configuration File
CVSS 7.8
CVE-2015-6490 CRITICAL
Allen-Bradley MicroLogix 1100 < 14.000 and 1400 <= 15.003 - Remote Code Execution
CVSS 9.8
CVE-2014-125122 MEDIUM
Linksys WRT120N 1.0.07 - Unauthenticated Stack-based Buffer Overflow via TM_Block_URL Parameter
Details
Vulnerabilities 3,426
Exploit Likelihood High