Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2022-10-07 CVE-2022-37891 Classic Buffer Overflow vulnerability in multiple products
Unauthenticated buffer overflow vulnerabilities exist within the Aruba InstantOS and ArubaOS 10 web management interface.
network
low complexity
arubanetworks siemens CWE-120
critical
9.8
2022-10-06 CVE-2022-37888 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba Networks AP management protocol) UDP port (8211).
network
low complexity
arubanetworks siemens CWE-120
critical
9.8
2022-09-26 CVE-2022-28722 Classic Buffer Overflow vulnerability in HP products
Certain HP Print Products are potentially vulnerable to Buffer Overflow.
network
low complexity
hp CWE-120
critical
9.8
2022-09-23 CVE-2022-38573 Classic Buffer Overflow vulnerability in 10-Strike Network Inventory Explorer 9.3
10-Strike Network Inventory Explorer v9.3 was discovered to contain a buffer overflow via the Add Computers function.
network
low complexity
10-strike CWE-120
critical
9.8
2022-09-22 CVE-2022-35021 Classic Buffer Overflow vulnerability in Otfcc Project Otfcc
OTFCC commit 617837b was discovered to contain a global buffer overflow via /release-x64/otfccdump+0x718693.
network
low complexity
otfcc-project CWE-120
6.5
2022-09-20 CVE-2022-32788 Classic Buffer Overflow vulnerability in Apple products
A buffer overflow was addressed with improved bounds checking.
network
low complexity
apple CWE-120
critical
9.8
2022-09-20 CVE-2022-40261 Classic Buffer Overflow vulnerability in multiple products
An attacker can exploit this vulnerability to elevate privileges from ring 0 to ring -2, execute arbitrary code in System Management Mode - an environment more privileged than operating system (OS) and completely isolated from it.
local
low complexity
intel ami CWE-120
8.2
2022-09-16 CVE-2022-39003 Classic Buffer Overflow vulnerability in Huawei Emui and Magic UI
Buffer overflow vulnerability in the video framework.
network
low complexity
huawei CWE-120
critical
9.1
2022-09-16 CVE-2022-38827 Classic Buffer Overflow vulnerability in Totolink T6 Firmware 4.1.5Cu.709B20210518
TOTOLINK T6 V4.1.5cu.709_B20210518 is vulnerable to Buffer Overflow via cstecgi.cgi
network
low complexity
totolink CWE-120
critical
9.8
2022-09-16 CVE-2022-38829 Classic Buffer Overflow vulnerability in Tenda RX9 PRO Firmware 22.03.02.10
Tenda RX9_Pro V22.03.02.10 is vulnerable to Buffer Overflow via httpd/setMacFilterCfg.
network
low complexity
tenda CWE-120
critical
9.8