Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2020-12-26 CVE-2020-29203 Classic Buffer Overflow vulnerability in Struct2Json Project Struct2Json
struct2json before 2020-11-18 is affected by a Buffer Overflow because strcpy is used for S2J_STRUCT_GET_string_ELEMENT.
network
low complexity
struct2json-project CWE-120
7.5
2020-12-26 CVE-2020-28759 Classic Buffer Overflow vulnerability in Tengine Project Tengine 1.0
The serializer module in OAID Tengine lite-v1.0 has a Buffer Overflow and crash.
local
low complexity
tengine-project CWE-120
5.5
2020-12-21 CVE-2020-29596 Classic Buffer Overflow vulnerability in Miniweb Http Server Project Miniweb Http Server 0.8.19
MiniWeb HTTP server 0.8.19 allows remote attackers to cause a denial of service (daemon crash) via a long name for the first parameter in a POST request.
network
low complexity
miniweb-http-server-project CWE-120
5.0
2020-12-21 CVE-2020-26422 Classic Buffer Overflow vulnerability in multiple products
Buffer overflow in QUIC dissector in Wireshark 3.4.0 to 3.4.1 allows denial of service via packet injection or crafted capture file
network
low complexity
wireshark oracle CWE-120
5.0
2020-12-11 CVE-2020-24336 Classic Buffer Overflow vulnerability in multiple products
An issue was discovered in Contiki through 3.0 and Contiki-NG through 4.5.
network
low complexity
contiki-ng contiki-os CWE-120
7.5
2020-12-11 CVE-2020-24633 Classic Buffer Overflow vulnerability in Arubanetworks Arubaos
There are multiple buffer overflow vulnerabilities that could lead to unauthenticated remote code execution by sending especially crafted packets destined to the PAPI (Aruba Networks AP management protocol) UDP port (8211) of access-points or controllers in Aruba 9000 Gateway; Aruba 7000 Series Mobility Controllers; Aruba 7200 Series Mobility Controllers version(s): 2.1.0.1, 2.2.0.0 and below; 6.4.4.23, 6.5.4.17, 8.2.2.9, 8.3.0.13, 8.5.0.10, 8.6.0.5, 8.7.0.0 and below; 6.4.4.23, 6.5.4.17, 8.2.2.9, 8.3.0.13, 8.5.0.10, 8.6.0.5, 8.7.0.0 and below.
network
low complexity
arubanetworks CWE-120
critical
10.0
2020-12-09 CVE-2020-29659 Classic Buffer Overflow vulnerability in Flexense Dupscout 10.0.18
A buffer overflow in the web server of Flexense DupScout Enterprise 10.0.18 allows a remote anonymous attacker to execute code as SYSTEM by overflowing the sid parameter via a GET /settings&sid= attack.
network
low complexity
flexense CWE-120
critical
10.0
2020-12-08 CVE-2020-9972 Classic Buffer Overflow vulnerability in Apple products
A buffer overflow issue was addressed with improved memory handling.
network
apple CWE-120
6.8
2020-12-08 CVE-2020-9954 Classic Buffer Overflow vulnerability in Apple products
A buffer overflow issue was addressed with improved memory handling.
network
apple CWE-120
6.8
2020-12-07 CVE-2020-9247 Classic Buffer Overflow vulnerability in Huawei products
There is a buffer overflow vulnerability in several Huawei products.
network
huawei CWE-120
6.8