Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2023-11-30 CVE-2023-5908 Classic Buffer Overflow vulnerability in multiple products
KEPServerEX is vulnerable to a buffer overflow which may allow an attacker to crash the product being accessed or leak information.
network
low complexity
ptc softwaretoolbox ge rockwellautomation CWE-120
critical
9.1
2023-11-30 CVE-2023-49700 Classic Buffer Overflow vulnerability in Asrmicro Asr1803 Firmware and Asr1806 Firmware
Security best practices violations, a string operation in Streamingmedia will write past the end of fixed-size destination buffer if the source buffer is too large.
network
low complexity
asrmicro CWE-120
7.5
2023-11-29 CVE-2023-24294 Classic Buffer Overflow vulnerability in Zumtobel Netlink CCD Firmware 3.80
Zumtobel Netlink CCD Onboard v3.74 - Firmware v3.80 was discovered to contain a buffer overflow via the component NetlinkWeb::Information::SetDeviceIdentification.
network
low complexity
zumtobel CWE-120
7.5
2023-11-23 CVE-2023-49208 Classic Buffer Overflow vulnerability in Glewlwyd SSO Server Project Glewlwyd SSO Server
scheme/webauthn.c in Glewlwyd SSO server before 2.7.6 has a possible buffer overflow during FIDO2 credentials validation in webauthn registration.
network
low complexity
glewlwyd-sso-server-project CWE-120
critical
9.8
2023-11-23 CVE-2023-28812 Classic Buffer Overflow vulnerability in Hikvision Localservicecomponents 1.0.0.78
There is a buffer overflow vulnerability in a web browser plug-in could allow an attacker to exploit the vulnerability by sending crafted messages to computers installed with this plug-in, which could lead to arbitrary code execution or cause process exception of the plug-in.
network
low complexity
hikvision CWE-120
critical
9.8
2023-11-23 CVE-2023-28811 Classic Buffer Overflow vulnerability in Hikvision products
There is a buffer overflow in the password recovery feature of Hikvision NVR/DVR models.
low complexity
hikvision CWE-120
6.5
2023-11-22 CVE-2023-43887 Classic Buffer Overflow vulnerability in Struktur Libde265 1.0.12
Libde265 v1.0.12 was discovered to contain multiple buffer overflows via the num_tile_columns and num_tile_row parameters in the function pic_parameter_set::dump.
network
low complexity
struktur CWE-120
8.1
2023-11-21 CVE-2023-6238 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow vulnerability was found in the NVM Express (NVMe) driver in the Linux kernel.
local
low complexity
linux fedoraproject CWE-120
6.7
2023-11-21 CVE-2023-4424 Classic Buffer Overflow vulnerability in Zephyrproject Zephyr
An malicious BLE device can cause buffer overflow by sending malformed advertising packet BLE device using Zephyr OS, leading to DoS or potential RCE on the victim BLE device.
low complexity
zephyrproject CWE-120
8.8
2023-11-20 CVE-2023-38823 Classic Buffer Overflow vulnerability in Tenda products
Buffer Overflow vulnerability in Tenda Ac19 v.1.0, AC18, AC9 v.1.0, AC6 v.2.0 and v.1.0 allows a remote attacker to execute arbitrary code via the formSetCfm function in bin/httpd.
network
low complexity
tenda CWE-120
critical
9.8