Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2024-09-18 CVE-2024-46591 Classic Buffer Overflow vulnerability in Draytek Vigor3910 Firmware 4.3.2.6
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sDnsPro parameter at v2x00.cgi.
network
low complexity
draytek CWE-120
7.5
2024-09-18 CVE-2024-46592 Classic Buffer Overflow vulnerability in Draytek Vigor3910 Firmware 4.3.2.6
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the ssidencrypt_5g%d parameter at v2x00.cgi.
network
low complexity
draytek CWE-120
7.5
2024-09-18 CVE-2024-46593 Classic Buffer Overflow vulnerability in Draytek Vigor3910 Firmware 4.3.2.6
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the trapcomm parameter at cgiswm.cgi.
network
low complexity
draytek CWE-120
7.5
2024-09-18 CVE-2024-46594 Classic Buffer Overflow vulnerability in Draytek Vigor3910 Firmware 4.3.2.6
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the saveVPNProfile parameter at v2x00.cgi.
network
low complexity
draytek CWE-120
7.5
2024-09-18 CVE-2024-46595 Classic Buffer Overflow vulnerability in Draytek Vigor3910 Firmware 4.3.2.6
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the saveitem parameter at lan2lan.cgi.
network
low complexity
draytek CWE-120
7.5
2024-09-18 CVE-2024-46596 Classic Buffer Overflow vulnerability in Draytek Vigor3910 Firmware 4.3.2.6
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sAct parameter at v2x00.cgi.
network
low complexity
draytek CWE-120
7.5
2024-09-18 CVE-2024-46597 Classic Buffer Overflow vulnerability in Draytek Vigor3910 Firmware 4.3.2.6
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sPubKey parameter at dialin.cgi.
network
low complexity
draytek CWE-120
7.5
2024-09-18 CVE-2024-46598 Classic Buffer Overflow vulnerability in Draytek Vigor3910 Firmware 4.3.2.6
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the iprofileidx parameter at dialin.cgi.
network
low complexity
draytek CWE-120
7.5
2024-09-16 CVE-2024-46419 Classic Buffer Overflow vulnerability in Totolink T8 Firmware 4.1.5Cu.861B20230220
TOTOLINK AC1200 T8 v4.1.5cu.861_B20230220 has a buffer overflow vulnerability in the setWizardCfg function via the ssid5g parameter.
network
low complexity
totolink CWE-120
critical
9.8
2024-09-16 CVE-2024-46424 Classic Buffer Overflow vulnerability in Totolink T8 Firmware 4.1.5Cu.861B20230220
TOTOLINK AC1200 T8 v4.1.5cu.861_B20230220 has a buffer overflow vulnerability in the UploadCustomModule function, which allows attackers to cause a Denial of Service (DoS) via the File parameter.
network
low complexity
totolink CWE-120
7.5