Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2020-12-30 CVE-2020-35796 Classic Buffer Overflow vulnerability in Netgear products
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker.
network
low complexity
netgear CWE-120
critical
9.8
2020-12-30 CVE-2020-35795 Classic Buffer Overflow vulnerability in Netgear products
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker.
network
low complexity
netgear CWE-120
critical
9.8
2020-12-30 CVE-2020-35788 Classic Buffer Overflow vulnerability in Netgear Wac104 Firmware
NETGEAR WAC104 devices before 1.0.4.13 are affected by a buffer overflow by an authenticated user.
low complexity
netgear CWE-120
6.8
2020-12-30 CVE-2020-35787 Classic Buffer Overflow vulnerability in Netgear products
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user.
low complexity
netgear CWE-120
8.0
2020-12-30 CVE-2020-35786 Classic Buffer Overflow vulnerability in Netgear R7800 Firmware
NETGEAR R7800 devices before 1.0.2.74 are affected by a buffer overflow by an authenticated user.
low complexity
netgear CWE-120
4.5
2020-12-26 CVE-2020-29203 Classic Buffer Overflow vulnerability in Struct2Json Project Struct2Json
struct2json before 2020-11-18 is affected by a Buffer Overflow because strcpy is used for S2J_STRUCT_GET_string_ELEMENT.
network
low complexity
struct2json-project CWE-120
critical
9.8
2020-12-26 CVE-2020-28759 Classic Buffer Overflow vulnerability in Tengine Project Tengine 1.0
The serializer module in OAID Tengine lite-v1.0 has a Buffer Overflow and crash.
local
low complexity
tengine-project CWE-120
5.5
2020-12-21 CVE-2020-29596 Classic Buffer Overflow vulnerability in Miniweb Http Server Project Miniweb Http Server 0.8.19
MiniWeb HTTP server 0.8.19 allows remote attackers to cause a denial of service (daemon crash) via a long name for the first parameter in a POST request.
network
low complexity
miniweb-http-server-project CWE-120
7.5
2020-12-21 CVE-2020-26422 Classic Buffer Overflow vulnerability in multiple products
Buffer overflow in QUIC dissector in Wireshark 3.4.0 to 3.4.1 allows denial of service via packet injection or crafted capture file
network
low complexity
wireshark oracle CWE-120
5.3
2020-12-11 CVE-2020-24336 Classic Buffer Overflow vulnerability in multiple products
An issue was discovered in Contiki through 3.0 and Contiki-NG through 4.5.
network
low complexity
contiki-os contiki-ng CWE-120
critical
9.8