Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2024-08-07 CVE-2024-20454 Classic Buffer Overflow vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco Small Business SPA500 Series IP Phones could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system with root privileges. These vulnerabilities exist because incoming HTTP packets are not properly checked for errors, which could result in a buffer overflow.
network
low complexity
cisco CWE-120
critical
9.8
2024-08-07 CVE-2024-7584 Classic Buffer Overflow vulnerability in Tenda I22 Firmware 1.0.0.3(4687)
A vulnerability, which was classified as critical, was found in Tenda i22 1.0.0.3(4687).
network
low complexity
tenda CWE-120
critical
9.8
2024-08-07 CVE-2024-7585 Classic Buffer Overflow vulnerability in Tenda I22 Firmware 1.0.0.3(4687)
A vulnerability has been found in Tenda i22 1.0.0.3(4687) and classified as critical.
network
low complexity
tenda CWE-120
critical
9.8
2024-08-07 CVE-2024-42238 Classic Buffer Overflow vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Return error if block header overflows file Return an error from cs_dsp_power_up() if a block header is longer than the amount of data left in the file. The previous code in cs_dsp_load() and cs_dsp_load_coeff() would loop while there was enough data left in the file for a valid region.
local
low complexity
linux CWE-120
5.5
2024-08-05 CVE-2024-7465 Classic Buffer Overflow vulnerability in Totolink Cp450 Firmware 4.1.0Cu.747B20191224
A vulnerability, which was classified as critical, was found in TOTOLINK CP450 4.1.0cu.747_B20191224.
network
low complexity
totolink CWE-120
critical
9.8
2024-08-05 CVE-2024-7463 Classic Buffer Overflow vulnerability in Totolink Cp900 Firmware 6.3C.566
A vulnerability classified as critical was found in TOTOLINK CP900 6.3c.566.
network
low complexity
totolink CWE-120
critical
9.8
2024-08-05 CVE-2024-7462 Classic Buffer Overflow vulnerability in Totolink N350Rt Firmware 9.3.5U.6139B20201216
A vulnerability classified as critical has been found in TOTOLINK N350RT 9.3.5u.6139_B20201216.
network
low complexity
totolink CWE-120
critical
9.8
2024-08-01 CVE-2024-7338 Classic Buffer Overflow vulnerability in Totolink Ex1200L Firmware 9.3.5U.6146B20201023
A vulnerability, which was classified as critical, was found in TOTOLINK EX1200L 9.3.5u.6146_B20201023.
network
low complexity
totolink CWE-120
8.8
2024-08-01 CVE-2024-7336 Classic Buffer Overflow vulnerability in Totolink Ex200 Firmware 4.0.3C.7646B20201211
A vulnerability classified as critical was found in TOTOLINK EX200 4.0.3c.7646_B20201211.
network
low complexity
totolink CWE-120
8.8
2024-08-01 CVE-2024-7337 Classic Buffer Overflow vulnerability in Totolink Ex1200L Firmware 9.3.5U.6146B20201023
A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200L 9.3.5u.6146_B20201023.
network
low complexity
totolink CWE-120
8.8