Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2020-07-20 CVE-2020-8215 Classic Buffer Overflow vulnerability in Automattic Canvas
A buffer overflow is present in canvas version <= 1.6.9, which could lead to a Denial of Service or execution of arbitrary code when it processes a user-provided image.
network
low complexity
automattic CWE-120
8.8
2020-07-17 CVE-2020-9257 Classic Buffer Overflow vulnerability in Huawei P30 PRO Firmware
HUAWEI P30 Pro smartphones with versions earlier than 10.1.0.123(C432E19R2P5patch02), versions earlier than 10.1.0.126(C10E11R5P1), and versions earlier than 10.1.0.160(C00E160R2P8) have a buffer overflow vulnerability.
network
low complexity
huawei CWE-120
8.8
2020-07-17 CVE-2020-1654 Classic Buffer Overflow vulnerability in Juniper Junos
On Juniper Networks SRX Series with ICAP (Internet Content Adaptation Protocol) redirect service enabled, processing a malformed HTTP message can lead to a Denial of Service (DoS) or Remote Code Execution (RCE) Continued processing of this malformed HTTP message may result in an extended Denial of Service (DoS) condition.
network
low complexity
juniper CWE-120
critical
9.8
2020-07-14 CVE-2020-7593 Classic Buffer Overflow vulnerability in Siemens Logo! 8 BM Firmware
A vulnerability has been identified in LOGO! 8 BM (incl.
network
low complexity
siemens CWE-120
critical
9.8
2020-07-14 CVE-2020-10042 Classic Buffer Overflow vulnerability in Siemens products
A vulnerability has been identified in SICAM MMU (All versions < V2.05), SICAM SGU (All versions), SICAM T (All versions < V2.18).
network
low complexity
siemens CWE-120
critical
9.8
2020-07-08 CVE-2020-3931 Classic Buffer Overflow vulnerability in Geovision products
Buffer overflow exists in Geovision Door Access Control device family, an unauthenticated remote attacker can execute arbitrary command.
network
low complexity
geovision CWE-120
critical
9.8
2020-07-07 CVE-2020-5595 Classic Buffer Overflow vulnerability in Mitsubishielectric Coreos 05.65.00.Bd/Y
TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model) contains a buffer overflow vulnerability, which may allow a remote attacker to stop the network functions of the products or execute a malicious program via a specially crafted packet.
network
low complexity
mitsubishielectric CWE-120
critical
9.8
2020-07-01 CVE-2020-15490 Classic Buffer Overflow vulnerability in Wavlink Wl-Wn530Hg4 Firmware M30Hg4.V5030.191116
An issue was discovered on Wavlink WL-WN530HG4 M30HG4.V5030.191116 devices.
network
low complexity
wavlink CWE-120
critical
9.8
2020-07-01 CVE-2020-4363 Classic Buffer Overflow vulnerability in IBM DB2
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 is vulnerable to a buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code on the system with root privileges.
local
low complexity
ibm CWE-120
7.8
2020-06-30 CVE-2019-20893 Classic Buffer Overflow vulnerability in Activision Call of Duty Modern Warfare 2 20180426/20191211
An issue was discovered in Activision Infinity Ward Call of Duty Modern Warfare 2 through 2019-12-11.
network
low complexity
activision CWE-120
critical
9.8