Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2018-08-17 CVE-2018-15354 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Kraftway 24F2Xg Router Firmware 3.5.30.1118
A Buffer Overflow exploited through web interface by remote attacker can cause denial of service in Kraftway 24F2XG Router firmware 3.5.30.1118.
network
low complexity
kraftway CWE-119
7.5
2018-08-17 CVE-2018-15353 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Kraftway 24F2Xg Router Firmware 3.5.30.1118
A Buffer Overflow exploited through web interface by remote attacker can cause remote code execution in Kraftway 24F2XG Router firmware 3.5.30.1118.
network
low complexity
kraftway CWE-119
critical
9.8
2018-08-15 CVE-2018-15172 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tp-Link Tl-Wr840N Firmware 0.9.1
TP-Link WR840N devices have a buffer overflow via a long Authorization HTTP header.
network
low complexity
tp-link CWE-119
7.5
2018-08-13 CVE-2018-6414 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Hikvision IP Cameras
A buffer overflow vulnerability in the web server of some Hikvision IP Cameras allows an attacker to send a specially crafted message to affected devices.
network
low complexity
hikvision CWE-119
critical
9.8
2018-08-13 CVE-2018-5925 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in HP products
A security vulnerability has been identified with certain HP Inkjet printers.
local
low complexity
hp CWE-119
7.8
2018-08-10 CVE-2018-15191 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Hotel Booking Script Project Hotel Booking Script 2.0.4
PHP Scripts Mall hotel-booking-script 2.0.4 allows remote attackers to cause a denial of service via crafted JavaScript code in the First Name, Last Name, or Address field.
network
low complexity
hotel-booking-script-project CWE-119
6.5
2018-08-10 CVE-2018-15188 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Advanced Real Estate Script Project Advanced Real Estate Script 4.0.9
PHP Scripts Mall advanced-real-estate-script 4.0.9 allows remote attackers to cause a denial of service (page structure loss) via crafted JavaScript code in the Name field of a profile.
6.5
2018-08-09 CVE-2018-0429 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco Thor Video Codec 18De8F9F0762C3A542B1122589Edb8Af859D9813
Stack-based buffer overflow in the Cisco Thor decoder before commit 18de8f9f0762c3a542b1122589edb8af859d9813 allows local users to cause a denial of service (segmentation fault) and execute arbitrary code via a crafted non-conformant Thor bitstream.
local
low complexity
cisco CWE-119
7.8
2018-08-08 CVE-2018-15176 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview 2.45
XnView 2.45 allows remote attackers to cause a denial of service (User Mode Write AV starting at MSVCR120!memcpy+0x0000000000000074 and application crash) or possibly have unspecified other impact via a crafted RLE file.
local
low complexity
xnview CWE-119
7.8
2018-08-08 CVE-2018-15175 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview 2.45
XnView 2.45 allows remote attackers to cause a denial of service (User Mode Write AV starting at Qt5Core!QVariant::~QVariant+0x0000000000000014 and application crash) or possibly have unspecified other impact via a crafted RLE file.
local
low complexity
xnview CWE-119
7.8