VulnSea

CWE-120

CVEs classified under CWE-120, newest first.

283 CVEsRSS

CVE-2025-9782High· 8.8
1y ago

A vulnerability was found in TOTOLINK A702R 4.0.0-B20211108.1423

A vulnerability was found in TOTOLINK A702R 4.0.0-B20211108.1423. This vulnerability affects the function sub_4466F8 of the file /boafrm/formOneKeyAccessButton. Performing manipulation of the argument submit-url results in buffer overflo…

▾ Twilighttotolink · a702r_firmwareEPSS 0.66%via NVD
CVE-2025-9781High· 8.8
1y ago

A vulnerability has been found in TOTOLINK A702R 4.0.0-B20211108.1423

A vulnerability has been found in TOTOLINK A702R 4.0.0-B20211108.1423. This affects the function sub_4162DC of the file /boafrm/formFilter. Such manipulation of the argument ip6addr leads to buffer overflow. The attack can be launched re…

▾ Twilighttotolink · a702r_firmwareEPSS 0.66%via NVD
CVE-2025-9780High· 8.8
1y ago

A flaw has been found in TOTOLINK A702R 4.0.0-B20211108.1423

A flaw has been found in TOTOLINK A702R 4.0.0-B20211108.1423. Affected by this issue is the function sub_419BE0 of the file /boafrm/formIpQoS. This manipulation of the argument mac causes buffer overflow. The attack can be initiated remo…

▾ Twilighttotolink · a702r_firmwareEPSS 0.66%via NVD
CVE-2025-9779High· 8.8
1y ago

A vulnerability was detected in TOTOLINK A702R 4.0.0-B20211108.1423

A vulnerability was detected in TOTOLINK A702R 4.0.0-B20211108.1423. Affected by this vulnerability is the function sub_4162DC of the file /boafrm/formFilter. The manipulation of the argument ip6addr results in buffer overflow. It is pos…

▾ Twilighttotolink · a702r_firmwareEPSS 0.66%via NVD
CVE-2024-54568Medium· 4.3
1y ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.2. Parsing a maliciously crafted file may lead to an unexpected app termination.

▾ Sunlitapple · macosEPSS 0.23%via NVD
CVE-2025-30265Medium· 6.5
1y ago

A buffer overflow vulnerability has been reported to affect several QNAP operating system versions

A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user account, they can then exploit the vulnerability to modify memory or crash processes. We have already …

▾ Sunlitqnap · qtsEPSS 0.38%via NVD
CVE-2025-43214Medium· 6.5
1y ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to an une…

▾ Sunlitapple · safariEPSS 1.00%via NVD
CVE-2025-43213Medium· 6.5
1y ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to an une…

▾ Sunlitapple · safariEPSS 0.76%via NVD
CVE-2025-31277High· 8.8CISA KEVPoC
1y ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to memory…

▾ Abyssalapple · safariEPSS 1.6%via NVD
CVE-2025-7345High· 7.5
1y ago

A flaw exists in gdk‑pixbuf within the gdk_pixbuf__jpeg_image_load_increment function (io-jpeg.c) and in glib’s g_base64_encode_step (glib/gbase64.c)

A flaw exists in gdk‑pixbuf within the gdk_pixbuf__jpeg_image_load_increment function (io-jpeg.c) and in glib’s g_base64_encode_step (glib/gbase64.c). When processing maliciously crafted JPEG images, a heap buffer overflow can occur duri…

▾ TwilightEPSS 1.2%via NVD
CVE-2025-5222High· 7.0PoC
1y ago

A stack buffer overflow was found in Internationl components for unicode (ICU )

A stack buffer overflow was found in Internationl components for unicode (ICU ). While running the genrb binary, the 'subtag' struct overflowed at the SRBRoot::addTag function. This issue may lead to memory corruption and local arbitrary…

▾ Midnightunicode · international_components_for_unicodeEPSS 0.43%via NVD
CVE-2025-31223High· 8.0
1y ago

The issue was addressed with improved checks

The issue was addressed with improved checks. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted web content may lead to memory corruption.

▾ Twilightapple · safariEPSS 0.57%via NVD
CVE-2025-1253High· 7.8
1y ago

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Stack-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Stack-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags. This issue affects Connext Professional: f…

▾ Twilightrti · connext_professionalEPSS 0.17%via NVD
CVE-2025-46397High· 7.8
1y ago

A flaw was found in xfig

A flaw was found in xfig. This vulnerability allows possible code execution via local input manipulation via bezier_spline function.

▾ Twilightfig2dev_project · fig2devEPSS 0.30%via NVD
CVE-2025-0689High· 7.8
1y ago

When reading data from disk, the grub's UDF filesystem module utilizes the user controlled data length metadata to allocate its internal buffers

When reading data from disk, the grub's UDF filesystem module utilizes the user controlled data length metadata to allocate its internal buffers. In certain scenarios, while iterating through disk sectors, it assumes the read size from t…

▾ Twilightgnu · grub2EPSS 0.48%via NVD
CVE-2025-21780High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: avoid buffer overflow attach in smu_sys_set_pp_table() It malicious user provides a small pptable through sysfs and then a bigger pptable, it may cause buf…

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: avoid buffer overflow attach in smu_sys_set_pp_table() It malicious user provides a small pptable through sysfs and then a bigger pptable, it may cause buf…

▾ Twilightlinux · linux_kernelEPSS 0.26%via NVD
CVE-2024-52059High· 7.8
1y ago

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Heap-based Buffer Overflow, Integer Overflow or Wraparound vulnerability in RTI Connext Professional (Security Plugins) allows Overflow Variables and Tags

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Heap-based Buffer Overflow, Integer Overflow or Wraparound vulnerability in RTI Connext Professional (Security Plugins) allows Overflow Variables and Tags. This issu…

▾ Twilightrti · connext_professionalEPSS 0.17%via NVD
CVE-2024-45620Low· 3.9
2y ago

A vulnerability was found in the pkcs15-init tool in OpenSC

A vulnerability was found in the pkcs15-init tool in OpenSC. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. When buffers are partially filled with data…

▾ Sunlitopensc_project · openscEPSS 0.32%via NVD
CVE-2024-45619Medium· 4.3
2y ago

A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK

A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. When buffers are…

▾ Sunlitopensc_project · openscEPSS 0.33%via NVD
CVE-2024-5974High· 7.2
2y ago

A buffer overflow in WatchGuard Fireware OS could may allow an authenticated remote attacker with privileged management access to execute arbitrary code with system privileges on the firewall. This issue affects Fireware OS: from 11.9.6 …

A buffer overflow in WatchGuard Fireware OS could may allow an authenticated remote attacker with privileged management access to execute arbitrary code with system privileges on the firewall. This issue affects Fireware OS: from 11.9.6 …

▾ Twilightwatchguard · firewareEPSS 1.0%via NVD
CVE-2024-26768High· 7.2
2y ago

In the Linux kernel, the following vulnerability has been resolved: LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] With default config, the value of NR_CPUS is 64

In the Linux kernel, the following vulnerability has been resolved: LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] With default config, the value of NR_CPUS is 64. When HW platform has more then 64 cpus, system…

▾ Twilightlinux · linux_kernelEPSS 0.60%via NVD
CVE-2021-47107Critical· 9.8
2y ago

In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix READDIR buffer overflow If a client sends a READDIR count argument that is too small (say, zero), then the buffer size calculation in the new init_dirlist he…

In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix READDIR buffer overflow If a client sends a READDIR count argument that is too small (say, zero), then the buffer size calculation in the new init_dirlist he…

▾ Midnightlinux · linux_kernelEPSS 0.85%via NVD
CVE-2021-47040High· 7.8
2y ago

In the Linux kernel, the following vulnerability has been resolved: io_uring: fix overflows checks in provide buffers Colin reported before possible overflow and sign extension problems in io_provide_buffers_prep()

In the Linux kernel, the following vulnerability has been resolved: io_uring: fix overflows checks in provide buffers Colin reported before possible overflow and sign extension problems in io_provide_buffers_prep(). As Linus pointed ou…

▾ Twilightlinux · linux_kernelEPSS 0.26%via NVD
CVE-2023-46847High· 8.6
2y ago

Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication.

Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication.

▾ Twilightsquid-cache · squidEPSS 88%via NVD
CVE-2023-38559Medium· 5.5
3y ago

A buffer overflow flaw was found in base/gdevdevn.c:1973 in devn_pcx_write_rle() in ghostscript

A buffer overflow flaw was found in base/gdevdevn.c:1973 in devn_pcx_write_rle() in ghostscript. This issue may allow a local attacker to cause a denial of service via outputting a crafted PDF file for a DEVN device with gs.

▾ Sunlitartifex · ghostscriptEPSS 0.43%via NVD
CVE-2023-35178High· 8.8
3y ago

Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow when performing a GET request to scan jobs.

Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow when performing a GET request to scan jobs.

▾ Twilighthp · w1a75a_firmwareEPSS 0.40%via NVD
CVE-2023-35176High· 8.8
3y ago

Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Denial of Service when using the backup & restore feature through the embedded web service on the device.

Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Denial of Service when using the backup & restore feature through the embedded web service on the device.

▾ Twilighthp · w1a75a_firmwareEPSS 0.43%via NVD
CVE-2023-27972Critical· 9.8
3y ago

Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Remote Code Execution.

Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Remote Code Execution.

▾ Midnighthp · laserjet_pro_m304-m305_w1a46a_firmwareEPSS 1.5%via NVD
CVE-2023-27971Critical· 9.8
3y ago

Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Elevation of Privilege.

Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Elevation of Privilege.

▾ Midnighthp · laserjet_pro_m304-m305_w1a46a_firmwareEPSS 0.90%via NVD
CVE-2022-35192High· 7.5
4y ago

D-Link Wireless AC1200 Dual Band VDSL ADSL Modem Router DSL-3782 Firmware v1.01 allows unauthenticated attackers to cause a Denial of Service (DoS) via the User parameter or Pwd parameter to Login.asp.

D-Link Wireless AC1200 Dual Band VDSL ADSL Modem Router DSL-3782 Firmware v1.01 allows unauthenticated attackers to cause a Denial of Service (DoS) via the User parameter or Pwd parameter to Login.asp.

▾ Twilightdlink · dsl-3782_firmwareEPSS 1.0%via NVD
CWE-120 vulnerabilities (CVEs) — page 9 · VulnSea