Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2021-04-06 CVE-2021-28181 Classic Buffer Overflow vulnerability in Asus products
The specific function in ASUS BMC’s firmware Web management page (Remote video configuration setting) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability.
network
low complexity
asus CWE-120
4.0
2021-04-06 CVE-2021-28180 Classic Buffer Overflow vulnerability in Asus products
The specific function in ASUS BMC’s firmware Web management page (Audit log configuration setting) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability.
network
low complexity
asus CWE-120
4.0
2021-04-06 CVE-2021-28179 Classic Buffer Overflow vulnerability in Asus products
The specific function in ASUS BMC’s firmware Web management page (Media support configuration setting) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability.
network
low complexity
asus CWE-120
4.0
2021-04-06 CVE-2021-28178 Classic Buffer Overflow vulnerability in Asus products
The UEFI configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability.
network
low complexity
asus CWE-120
4.0
2021-04-06 CVE-2021-28177 Classic Buffer Overflow vulnerability in Asus products
The LDAP configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability.
network
low complexity
asus CWE-120
4.0
2021-04-06 CVE-2021-28176 Classic Buffer Overflow vulnerability in Asus products
The DNS configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability.
network
low complexity
asus CWE-120
4.0
2021-04-06 CVE-2021-28175 Classic Buffer Overflow vulnerability in Asus products
The Radius configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability.
network
low complexity
asus CWE-120
4.0
2021-04-05 CVE-2020-19596 Classic Buffer Overflow vulnerability in Coreftp Core FTP 1.2
Buffer overflow vulnerability in Core FTP Server v1.2 Build 583, via a crafted username.
network
low complexity
coreftp CWE-120
7.5
2021-04-05 CVE-2020-19595 Classic Buffer Overflow vulnerability in Coreftp Core FTP 2.0
Buffer overflow vulnerability in Core FTP Server v2 Build 697, via a crafted username.
network
low complexity
coreftp CWE-120
5.0
2021-04-02 CVE-2020-21588 Classic Buffer Overflow vulnerability in Coreftp Core FTP 2.2
Buffer overflow in Core FTP LE v2.2 allows local attackers to cause a denial or service (crash) via a long string in the Setup->Users->Username editbox.
local
low complexity
coreftp CWE-120
2.1