CWE-121

High likelihood

Stack-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

3,408 vulnerabilities with CWE-121
CVE-2025-14654 HIGH
Tenda AC20 16.03.08.12 - Buffer Overflow
CVSS 8.8
CVE-2025-66048 CRITICAL
The Biosig Project libbiosig <3.9.1 - Buffer Overflow
CVSS 9.8
CVE-2025-66047 CRITICAL
The Biosig Project libbiosig <3.9.1 - Buffer Overflow
CVSS 9.8
CVE-2025-66046 CRITICAL
The Biosig Project libbiosig <3.9.1 - Buffer Overflow
CVSS 9.8
CVE-2025-66045 CRITICAL
The Biosig Project libbiosig <3.9.1 - Buffer Overflow
CVSS 9.8
CVE-2025-66044 CRITICAL
The Biosig Project libbiosig <3.9.1 - Buffer Overflow
CVSS 9.8
CVE-2025-66043 CRITICAL
The Biosig Project libbiosig <3.9.1 - Buffer Overflow
CVSS 9.8
CVE-2025-41732 CRITICAL
WAGO 0852-1328 and 0852-1322 Firmware < 02.64 - Unauthenticated Stack-based Buffer Overflow via check_cookie() sscanf
CVSS 9.8
CVE-2025-41730 CRITICAL
WAGO 0852-1328 and 0852-1322 Firmware < 02.64 - Unauthenticated Stack-based Buffer Overflow via check_account() sscanf
CVSS 9.8
CVE-2025-65804 MEDIUM
Tenda AX3 v16.03.12.11 - Stack-based Buffer Overflow via formSetIptv iptvType Parameter
CVSS 6.5
CVE-2025-14136 HIGH
Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 - Stack-based Buffer Overflow via clientsname_0 Argument
CVSS 8.8
CVE-2025-14135 HIGH
Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 - Stack-based Buffer Overflow
CVSS 8.8
CVE-2025-14134 HIGH
Linksys RE6500 RE6250 RE6300 RE6350 RE7000 RE9000 - Stack-based Buffer Overflow via clientsname_0 Argument
CVSS 8.8
CVE-2025-14133 HIGH
Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 - Stack-Based Buffer Overflow
CVSS 8.8
CVE-2025-1547 HIGH
WatchGuard Fireware 12.0-12.5.12+701324 12.6-12.11.2 - Authenticated Stack-based Buffer Overflow via CLI Commands
CVSS 7.2
CVE-2025-11786 CRITICAL
Circutor SGE-PLC1000/SGE-PLC50 v9.0.2 - OS Command Injection via SetUserPassword Function
CVSS 9.8
CVE-2025-11785 CRITICAL
Circutor SGE-PLC1000/SGE-PLC50 v9.0.2 - Stack-based Buffer Overflow in ShowMeterPasswords() Function
CVSS 9.8
CVE-2025-11784 CRITICAL
Circutor SGE-PLC1000/SGE-PLC50 v9.0.2 - Stack-based Buffer Overflow via Meter Parameter
CVSS 9.8
CVE-2025-11783 CRITICAL
Circutor SGE-PLC1000/SGE-PLC50 v9.0.2 - Stack-based Buffer Overflow in AddEvent() Function
CVSS 9.8
CVE-2025-11782 CRITICAL
Circutor SGE-PLC1000/SGE-PLC50 v9.0.2 - Stack-based Buffer Overflow in ShowDownload() Function
CVSS 9.8
CVE-2025-11779 CRITICAL
Circutor SGE-PLC1000/SGE-PLC50 v9.0.2 - Stack-based Buffer Overflow in SetLan Function
CVSS 9.8
CVE-2025-20769 MEDIUM
Android - Local Privilege Escalation via Display Bounds Check Bypass
CVSS 6.7
CVE-2025-12143 MEDIUM
ABB Terra AC <1.8.33 - Buffer Overflow
CVSS 6.1
CVE-2025-64344 HIGH
Suricata < 7.0.13 - Stack-based Buffer Overflow in Lua Script Buffer Handling
CVSS 7.5
CVE-2025-64333 HIGH
Suricata < 7.0.13 - Denial of Service via HTTP Content Type Logging
CVSS 7.5
Details
Vulnerabilities 3,408
Exploit Likelihood High