Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2023-11-29 CVE-2023-24294 Classic Buffer Overflow vulnerability in Zumtobel Netlink CCD Firmware 3.80
Zumtobel Netlink CCD Onboard v3.74 - Firmware v3.80 was discovered to contain a buffer overflow via the component NetlinkWeb::Information::SetDeviceIdentification.
network
low complexity
zumtobel CWE-120
7.5
2023-11-28 CVE-2023-37926 Classic Buffer Overflow vulnerability in Zyxel ZLD
A buffer overflow vulnerability in the Zyxel ATP series firmware versions 4.32 through 5.37, USG FLEX series firmware versions 4.50 through 5.37, USG FLEX 50(W) series firmware versions 4.16 through 5.37, USG20(W)-VPN series firmware versions 4.16 through 5.37, and VPN series firmware versions 4.30 through 5.37, could allow an authenticated local attacker to cause denial-of-service (DoS) conditions by executing the CLI command to dump system logs on an affected device.
local
low complexity
zyxel CWE-120
5.5
2023-11-28 CVE-2023-4397 Classic Buffer Overflow vulnerability in Zyxel ZLD 5.37
A buffer overflow vulnerability in the Zyxel ATP series firmware version 5.37, USG FLEX series firmware version 5.37, USG FLEX 50(W) series firmware version 5.37, and USG20(W)-VPN series firmware version 5.37, could allow an authenticated local attacker with administrator privileges to cause denial-of-service (DoS) conditions by executing the CLI command with crafted strings on an affected device.
local
low complexity
zyxel CWE-120
4.4
2023-11-27 CVE-2023-4590 Classic Buffer Overflow vulnerability in Kimmov Frhed 1.6.0
Buffer overflow vulnerability in Frhed hex editor, affecting version 1.6.0.
network
low complexity
kimmov CWE-120
critical
9.8
2023-11-23 CVE-2023-49208 Classic Buffer Overflow vulnerability in Glewlwyd SSO Server Project Glewlwyd SSO Server
scheme/webauthn.c in Glewlwyd SSO server before 2.7.6 has a possible buffer overflow during FIDO2 credentials validation in webauthn registration.
network
low complexity
glewlwyd-sso-server-project CWE-120
critical
9.8
2023-11-23 CVE-2023-28812 Classic Buffer Overflow vulnerability in Hikvision Localservicecomponents 1.0.0.78
There is a buffer overflow vulnerability in a web browser plug-in could allow an attacker to exploit the vulnerability by sending crafted messages to computers installed with this plug-in, which could lead to arbitrary code execution or cause process exception of the plug-in.
network
low complexity
hikvision CWE-120
critical
9.8
2023-11-23 CVE-2023-28811 Classic Buffer Overflow vulnerability in Hikvision products
There is a buffer overflow in the password recovery feature of Hikvision NVR/DVR models.
low complexity
hikvision CWE-120
6.5
2023-11-22 CVE-2023-43887 Classic Buffer Overflow vulnerability in Struktur Libde265 1.0.12
Libde265 v1.0.12 was discovered to contain multiple buffer overflows via the num_tile_columns and num_tile_row parameters in the function pic_parameter_set::dump.
network
low complexity
struktur CWE-120
8.1
2023-11-21 CVE-2023-6238 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow vulnerability was found in the NVM Express (NVMe) driver in the Linux kernel.
local
low complexity
linux fedoraproject CWE-120
6.7
2023-11-21 CVE-2023-4424 Classic Buffer Overflow vulnerability in Zephyrproject Zephyr
An malicious BLE device can cause buffer overflow by sending malformed advertising packet BLE device using Zephyr OS, leading to DoS or potential RCE on the victim BLE device.
low complexity
zephyrproject CWE-120
8.8