Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2019-03-25 CVE-2014-9189 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Honeywell Experion Process Knowledge System R400/R410/R430
Multiple stack-based buffer overflow vulnerabilities were found in Honeywell Experion PKS all versions prior to R400.6, all versions prior to R410.6, and all versions prior to R430.2 modules that could lead to possible remote code execution, dynamic memory corruption, or denial of service.
network
low complexity
honeywell CWE-119
critical
9.8
2019-03-25 CVE-2014-9187 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Honeywell Experion Process Knowledge System R400/R410/R430
Multiple heap-based buffer overflow vulnerabilities exist in Honeywell Experion PKS all versions prior to R400.6, all versions prior to R410.6, and all versions prior to R430.2 modules, which could lead to possible remote code execution or denial of service.
network
low complexity
honeywell CWE-119
critical
9.8
2019-03-25 CVE-2015-1007 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Opto22 products
A specially crafted configuration file could be used to cause a stack-based buffer overflow condition in the OPCTest.exe, which may allow remote code execution on Opto 22 PAC Project Professional versions prior to R9.4008, PAC Project Basic versions prior to R9.4008, PAC Display Basic versions prior to R9.4g, PAC Display Professional versions prior to R9.4g, OptoOPCServer version R9.4c and prior that were installed by PAC Project installer, versions prior to R9.4008, and OptoDataLink version R9.4d and prior that were installed by PAC Project installer, versions prior to R9.4008.
local
low complexity
opto22 CWE-119
7.8
2019-03-24 CVE-2019-9969 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview Classic 2.48
XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to xnview+0x385399.
local
low complexity
xnview CWE-119
7.8
2019-03-24 CVE-2019-9968 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview Classic 2.48
XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to ntdll!RtlQueueWorkItem.
local
low complexity
xnview CWE-119
7.8
2019-03-24 CVE-2019-9967 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview Classic 2.48
XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to ntdll!RtlPrefixUnicodeString.
local
low complexity
xnview CWE-119
7.8
2019-03-24 CVE-2019-9966 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview Classic 2.48
XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to xnview+0x38536c.
local
low complexity
xnview CWE-119
7.8
2019-03-24 CVE-2019-9965 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview MP 0.93.1
XnView MP 0.93.1 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to ntdll!RtlReAllocateHeap.
local
low complexity
xnview CWE-119
7.8
2019-03-24 CVE-2019-9964 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview MP 0.93.1
XnView MP 0.93.1 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to ntdll!RtlpNtMakeTemporaryKey.
local
low complexity
xnview CWE-119
7.8
2019-03-24 CVE-2019-9963 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview MP 0.93.1
XnView MP 0.93.1 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to ntdll!RtlFreeHeap.
local
low complexity
xnview CWE-119
7.8