Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2021-12-07 CVE-2021-43002 Classic Buffer Overflow vulnerability in Amzetta Zportal DVM Tools
Amzetta zPortal DVM Tools is affected by Buffer Overflow.
local
low complexity
amzetta CWE-120
8.8
2021-12-07 CVE-2021-43637 Classic Buffer Overflow vulnerability in Amazon Workspaces 1.0
Amazon WorkSpaces agent is affected by Buffer Overflow.
local
low complexity
amazon CWE-120
8.8
2021-12-07 CVE-2020-12140 Classic Buffer Overflow vulnerability in Contiki-Ng
A buffer overflow in os/net/mac/ble/ble-l2cap.c in the BLE stack in Contiki-NG 4.4 and earlier allows an attacker to execute arbitrary code via malicious L2CAP frames.
low complexity
contiki-ng CWE-120
8.8
2021-12-06 CVE-2021-43042 Classic Buffer Overflow vulnerability in Kaseya Unitrends Backup
An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5.
network
low complexity
kaseya CWE-120
critical
9.8
2021-12-02 CVE-2020-36133 Classic Buffer Overflow vulnerability in Aomedia 2.0.1
AOM v2.0.1 was discovered to contain a global buffer overflow via the component av1/encoder/partition_search.h.
network
low complexity
aomedia CWE-120
8.8
2021-12-02 CVE-2021-26777 Classic Buffer Overflow vulnerability in Circutor Compact Dc-S Basic Firmware 1.2.17
Buffer overflow vulnerability in function SetFirewall in index.cgi in CIRCUTOR COMPACT DC-S BASIC smart metering concentrator Firwmare version CIR_CDC_v1.2.17, allows attackers to execute arbitrary code.
network
low complexity
circutor CWE-120
critical
9.8
2021-12-01 CVE-2021-20852 Classic Buffer Overflow vulnerability in Elecom Wrh-733Gbk Firmware and Wrh-733Gwh Firmware
Buffer overflow vulnerability in ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a network-adjacent attacker with an administrator privilege to execute an arbitrary OS command via unspecified vectors.
low complexity
elecom CWE-120
6.8
2021-11-29 CVE-2021-44428 Classic Buffer Overflow vulnerability in Ipuptime Pinkie 2.15
Pinkie 2.15 allows remote attackers to cause a denial of service (daemon crash) via a TFTP read (RRQ) request, aka opcode 1.
network
low complexity
ipuptime CWE-120
7.5
2021-11-29 CVE-2021-44429 Classic Buffer Overflow vulnerability in Vercot Serva 4.4.0
Serva 4.4.0 allows remote attackers to cause a denial of service (daemon crash) via a TFTP read (RRQ) request, aka opcode 1, a related issue to CVE-2013-0145.
network
low complexity
vercot CWE-120
7.5
2021-11-24 CVE-2021-34423 Classic Buffer Overflow vulnerability in Zoom products
A buffer overflow vulnerability was discovered in Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.8.4, Zoom Client for Meetings for Blackberry (for Android and iOS) before version 5.8.1, Zoom Client for Meetings for intune (for Android and iOS) before version 5.8.4, Zoom Client for Meetings for Chrome OS before version 5.0.1, Zoom Rooms for Conference Room (for Android, AndroidBali, macOS, and Windows) before version 5.8.3, Controllers for Zoom Rooms (for Android, iOS, and Windows) before version 5.8.3, Zoom VDI Windows Meeting Client before version 5.8.4, Zoom VDI Azure Virtual Desktop Plugins (for Windows x86 or x64, IGEL x64, Ubuntu x64, HP ThinPro OS x64) before version 5.8.4.21112, Zoom VDI Citrix Plugins (for Windows x86 or x64, Mac Universal Installer & Uninstaller, IGEL x64, eLux RP6 x64, HP ThinPro OS x64, Ubuntu x64, CentOS x 64, Dell ThinOS) before version 5.8.4.21112, Zoom VDI VMware Plugins (for Windows x86 or x64, Mac Universal Installer & Uninstaller, IGEL x64, eLux RP6 x64, HP ThinPro OS x64, Ubuntu x64, CentOS x 64, Dell ThinOS) before version 5.8.4.21112, Zoom Meeting SDK for Android before version 5.7.6.1922, Zoom Meeting SDK for iOS before version 5.7.6.1082, Zoom Meeting SDK for macOS before version 5.7.6.1340, Zoom Meeting SDK for Windows before version 5.7.6.1081, Zoom Video SDK (for Android, iOS, macOS, and Windows) before version 1.1.2, Zoom On-Premise Meeting Connector Controller before version 4.8.12.20211115, Zoom On-Premise Meeting Connector MMR before version 4.8.12.20211115, Zoom On-Premise Recording Connector before version 5.1.0.65.20211116, Zoom On-Premise Virtual Room Connector before version 4.4.7266.20211117, Zoom On-Premise Virtual Room Connector Load Balancer before version 2.5.5692.20211117, Zoom Hybrid Zproxy before version 1.0.1058.20211116, and Zoom Hybrid MMR before version 4.6.20211116.131_x86-64.
network
low complexity
zoom CWE-120
critical
9.8