CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,878 vulnerabilities with CWE-125
CVE-2022-37368 MEDIUM
PDF-XChange Editor - Out-of-bounds Read in Doc Object Handling
CVSS 5.5
CVE-2022-37367 HIGH
PDF-XChange Editor - Out-of-bounds Read in AcroForms Handling
CVSS 7.8
CVE-2022-37366 HIGH
PDF-XChange Editor - Out-of-bounds Read in Doc Object Handling
CVSS 7.8
CVE-2022-37363 HIGH
PDF-XChange Editor - Out-of-bounds Read in EMF File Parser
CVSS 7.8
CVE-2022-37361 MEDIUM
PDF-XChange Editor - Out-of-bounds Read in JP2 File Parser
CVSS 5.5
CVE-2022-37360 MEDIUM
PDF-XChange Editor - Out-of-bounds Read in EMF File Parser
CVSS 5.5
CVE-2022-37353 MEDIUM
PDF-XChange Editor - Out-of-bounds Read in EMF File Parser
CVSS 5.5
CVE-2022-37352 MEDIUM
PDF-XChange Editor - Out-of-bounds Read in WMF File Parser
CVSS 5.5
CVE-2022-37351 MEDIUM
PDF-XChange Editor - Out-of-bounds Read in J2K File Parser
CVSS 5.5
CVE-2022-37350 HIGH
PDF-XChange Editor - Remote Code Execution via Collab Object Handling
CVSS 7.8
CVE-2022-37349 HIGH
PDF-XChange Editor - Remote Code Execution via submitForm Method
CVSS 7.8
CVE-2022-28647 HIGH
Bentley MicroStation CONNECT 10.16.2.034 - Code Injection
CVSS 7.8
CVE-2022-28645 MEDIUM
Bentley MicroStation CONNECT 10.16.02.34 - Info Disclosure
CVSS 5.5
CVE-2022-28313 MEDIUM
Bentley MicroStation and View < 10.16.03 - Out-of-bounds Read in 3DS File Parser
CVSS 5.5
CVE-2022-28312 MEDIUM
Bentley MicroStation and View < 10.16.03 - Out-of-bounds Read in 3DS File Parser
CVSS 5.5
CVE-2022-28311 HIGH
Bentley MicroStation and View < 10.16.03 - Remote Code Execution via DXF File Parsing
CVSS 7.8
CVE-2022-28309 MEDIUM
Bentley Microstation and View < 10.16.03 - Out-of-bounds Read in 3DS File Parser
CVSS 5.5
CVE-2022-28308 MEDIUM
Bentley Microstation and View < 10.16.03 - Out-of-bounds Read in 3DS File Parser
CVSS 5.5
CVE-2022-28307 HIGH
Bentley Microstation and View < 10.16.03 - Remote Code Execution via DXF File Parsing
CVSS 7.8
CVE-2022-28302 HIGH
Bentley MicroStation and View < 10.16.03 - Remote Code Execution via IFC File Parsing
CVSS 7.8
CVE-2022-27598 LOW
QNAP QTS < 5.0.1.2346 and QuTS hero < h5.0.1.2348 - Authenticated Out-of-bounds Read
CVSS 2.7
CVE-2022-27597 LOW
QNAP QVR - Authenticated Out-of-bounds Read
CVSS 2.7
CVE-2022-24908 HIGH
Foxit PDF Reader < 11.2.1 and PDF Editor < 10.1.7 - Remote Code Execution via JP2 Image Parsing
CVSS 7.8
CVE-2022-24907 HIGH
Foxit PDF Reader < 11.2.1 and PDF Editor < 10.1.7 - Out-of-bounds Read in JP2 Image Parser
CVSS 7.8
CVE-2022-24353 HIGH
TP-Link AC1750 <1.1.4 Build 20211022 rel.59103(5553) - RCE
CVSS 8.8
Details
Vulnerabilities 8,878