Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2023-02-12 CVE-2022-33277 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command.
local
low complexity
qualcomm CWE-120
7.8
2023-02-12 CVE-2022-42444 Classic Buffer Overflow vulnerability in IBM APP Connect Enterprise
IBM App Connect Enterprise 11.0.0.8 through 11.0.0.19 and 12.0.1.0 through 12.0.5.0 is vulnerable to a buffer overflow.
network
low complexity
ibm CWE-120
6.5
2023-02-06 CVE-2023-0687 Classic Buffer Overflow vulnerability in GNU Glibc
A vulnerability was found in GNU C Library 2.38.
network
low complexity
gnu CWE-120
critical
9.8
2023-02-03 CVE-2021-37311 Classic Buffer Overflow vulnerability in Fcitx 5 Project Fcitx 5 5.0.8
Buffer Overflow vulnerability in fcitx5 5.0.8 allows attackers to cause a denial of service via crafted message to the application's listening port.
network
low complexity
fcitx-5-project CWE-120
7.5
2023-02-01 CVE-2023-22422 Classic Buffer Overflow vulnerability in F5 products
On BIG-IP versions 17.0.x before 17.0.0.2 and 16.1.x before 16.1.3.3, when a HTTP profile with the non-default Enforcement options of Enforce HTTP Compliance and Unknown Methods: Reject are configured on a virtual server, undisclosed requests can cause the Traffic Management Microkernel (TMM) to terminate.
network
low complexity
f5 CWE-120
7.5
2023-02-01 CVE-2023-0617 Classic Buffer Overflow vulnerability in Trendnet Tew-811Dru Firmware 1.0.10.0
A vulnerability was found in TRENDNet TEW-811DRU 1.0.10.0.
network
low complexity
trendnet CWE-120
7.5
2023-02-01 CVE-2023-0612 Classic Buffer Overflow vulnerability in Trendnet Tew-811Dru Firmware 1.0.10.0
A vulnerability, which was classified as critical, was found in TRENDnet TEW-811DRU 1.0.10.0.
network
low complexity
trendnet CWE-120
7.5
2023-02-01 CVE-2022-24324 Classic Buffer Overflow vulnerability in Schneider-Electric Interactive Graphical Scada System
A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflow potentially leading to remote code execution when an attacker sends a specially crafted message.
network
low complexity
schneider-electric CWE-120
critical
9.8
2023-01-31 CVE-2022-47035 Classic Buffer Overflow vulnerability in Dlink Dir-825 Firmware
Buffer Overflow Vulnerability in D-Link DIR-825 v1.33.0.44ebdd4-embedded and below allows attacker to execute arbitrary code via the GetConfig method to the /CPE endpoint.
network
low complexity
dlink CWE-120
critical
9.8
2023-01-30 CVE-2022-32522 Classic Buffer Overflow vulnerability in Schneider-Electric Interactive Graphical Scada System
A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflow, potentially leading to remote code execution when an attacker sends specially crafted mathematically reduced data request messages.
network
low complexity
schneider-electric CWE-120
critical
9.8