Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2023-12-25 CVE-2023-47091 Classic Buffer Overflow vulnerability in Stormshield Network Security
An issue was discovered in Stormshield Network Security (SNS) SNS 4.3.13 through 4.3.22 before 4.3.23, SNS 4.6.0 through 4.6.9 before 4.6.10, and SNS 4.7.0 through 4.7.1 before 4.7.2.
network
low complexity
stormshield CWE-120
7.5
2023-12-25 CVE-2023-51771 Classic Buffer Overflow vulnerability in Starnight Micro Http Server
In MicroHttpServer (aka Micro HTTP Server) through a8ab029, _ParseHeader in lib/server.c allows a one-byte recv buffer overflow via a long URI.
network
low complexity
starnight CWE-120
critical
9.8
2023-12-20 CVE-2023-50044 Classic Buffer Overflow vulnerability in Cesanta MJS 2.22.0
Cesanta MJS 2.20.0 has a getprop_builtin_foreign out-of-bounds read if a Built-in API name occurs in a substring of an input string.
network
low complexity
cesanta CWE-120
critical
9.8
2023-12-20 CVE-2023-50628 Classic Buffer Overflow vulnerability in Libming 0.4.8
Buffer Overflow vulnerability in libming version 0.4.8, allows attackers to execute arbitrary code and obtain sensitive information via parser.c component.
network
low complexity
libming CWE-120
critical
9.8
2023-12-19 CVE-2023-6711 Classic Buffer Overflow vulnerability in Hitachienergy Rtu500 Firmware
Vulnerability exists in SCI IEC 60870-5-104 and HCI IEC 60870-5-104 that affects the RTU500 series product versions listed below.
network
low complexity
hitachienergy CWE-120
7.5
2023-12-18 CVE-2023-6906 Classic Buffer Overflow vulnerability in Totolink A7100Ru Firmware 7.4Cu.2313B20191024
A vulnerability, which was classified as critical, was found in Totolink A7100RU 7.4cu.2313_B20191024.
network
low complexity
totolink CWE-120
critical
9.8
2023-12-16 CVE-2023-50784 Classic Buffer Overflow vulnerability in Unrealircd
A buffer overflow in websockets in UnrealIRCd 6.1.0 through 6.1.3 before 6.1.4 allows an unauthenticated remote attacker to crash the server by sending an oversized packet (if a websocket port is open).
network
low complexity
unrealircd CWE-120
7.5
2023-12-15 CVE-2023-50469 Classic Buffer Overflow vulnerability in Szlbt Lbt-T300-T310 Firmware 2.2.2.6
Shenzhen Libituo Technology Co., Ltd LBT-T300-T310 v2.2.2.6 was discovered to contain a buffer overflow via the ApCliEncrypType parameter at /apply.cgi.
network
low complexity
szlbt CWE-120
critical
9.8
2023-12-14 CVE-2023-37457 Classic Buffer Overflow vulnerability in multiple products
Asterisk is an open source private branch exchange and telephony toolkit.
network
low complexity
sangoma digium CWE-120
8.2
2023-12-14 CVE-2023-25642 Classic Buffer Overflow vulnerability in ZTE Mc801A1 Firmware and Mc801A Firmware
There is a buffer overflow vulnerability in some ZTE mobile internet producsts.
network
low complexity
zte CWE-120
6.5