CWE-121

High likelihood

Stack-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

3,418 vulnerabilities with CWE-121
CVE-2024-20518 MEDIUM
Cisco Small Business RV042-325 - RCE
CVSS 6.5
CVE-2024-46313 HIGH
TP-Link WR941ND V6 - Stack-based Buffer Overflow via SSID Parameter
CVSS 8.0
CVE-2024-23967 HIGH
Autel MaxiCharger AC Elite Business C50 Firmware - Stack-based Buffer Overflow via WebSocket Base64 Decoding
CVSS 8.0
CVE-2024-23959 HIGH
Autel MaxiCharger AC Elite Business C50 Firmware - Stack-based Buffer Overflow via AppChargingControl BLE Command
CVSS 8.0
CVE-2024-23935 HIGH
Alpine Halo9 ilx-f509 Firmware - Stack-based Buffer Overflow in DecodeUTF7
CVSS 8.0
CVE-2024-23957 HIGH
Autel MaxiCharger AC Elite Business C50 - Unauthenticated Stack Overflow via DLB_HostHeartBeat
CVSS 8.8
CVE-2024-23938 HIGH
Silicon Labs Gecko OS - Unauthenticated Stack-based Buffer Overflow via Debug Interface
CVSS 8.8
CVE-2024-9284 MEDIUM
TP-LINK TL-WR841ND up to 20240920 - Stack-based Buffer Overflow via SSID Parameter
CVSS 6.5
CVE-2024-20433 HIGH
Cisco IOS - Unauthenticated Denial of Service via RSVP Packet Buffer Overflow
CVSS 8.6
CVE-2024-23934 HIGH
Sony XAV-AX5500 >=1.13 <1.13 - Remote Code Execution via WMV/ASF Extended Content Description Object Parsing
CVSS 8.8
CVE-2024-23933 MEDIUM
Sony XAV-AX5500 >=1.13 <1.13 - Unauthenticated Stack-based Buffer Overflow via Apple CarPlay Protocol
CVSS 6.8
CVE-2024-9043 CRITICAL
Cellopoint Secure Email Gateway 4.2.1-<4.5.0 - Unauthenticated Stack-based Buffer Overflow in Authentication Process
CVSS 9.8
CVE-2024-31570 CRITICAL
FreeImage 3.4.0-3.18.0 - Stack-based Buffer Overflow in XPM Load Function
CVSS 9.8
CVE-2024-44589 HIGH
D-Link DCS-960L 1.09 - HNAP Login Stack Overflow Code Execution
CVSS 8.8
CVE-2024-34026 CRITICAL
OpenPLC v3 b4702061dc14d1024856f71b4543298d77007b88 - Stack-based Buffer Overflow in EtherNet/IP Parser
CVSS 9.0
CVE-2024-45415 CRITICAL
ZTE Multiple Routers - Stack-based Buffer Overflow in HTTPD check_data_integrity Function
CVSS 9.8
CVE-2024-45414 CRITICAL
ZTE Routers - Unauthenticated Stack-based Buffer Overflow in webPrivateDecrypt
CVSS 9.8
CVE-2024-45413 HIGH
ZTE Routers - Authenticated Stack-based Buffer Overflow in HTTPD rsa_decrypt Function
CVSS 8.1
CVE-2024-45695 CRITICAL
D-Link DIR-X4860 Firmware - Unauthenticated Stack-based Buffer Overflow
CVSS 9.8
CVE-2024-45694 CRITICAL
D-Link DIR-X5460 and DIR-X4860 Firmware - Unauthenticated Stack-based Buffer Overflow
CVSS 9.8
CVE-2024-6137 HIGH
Zephyr < 3.6.0 - Stack-based Buffer Overflow in BT Classic SDP Attribute Search
CVSS 7.6
CVE-2024-5931 MEDIUM
Zephyr < 3.6.0 - Improper Validation of Specified Quantity in Input via BT Broadcast Assistant
CVSS 6.3
CVE-2024-4550 MEDIUM
Lenovo ThinkSystem/ThinkStation - Buffer Overflow
CVSS 6.7
CVE-2024-3100 MEDIUM
Lenovo BIOS Authenticated Stack-based Buffer Overflow
CVSS 6.7
CVE-2024-46049 CRITICAL
Tenda O6 V3.0 Firmware V1.0.0.7(2054) - Stack-based Buffer Overflow in formexeCommand
CVSS 9.8
Details
Vulnerabilities 3,418
Exploit Likelihood High