Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2019-03-24 CVE-2019-9962 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview MP 0.93.1
XnView MP 0.93.1 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to VCRUNTIME140!memcpy.
local
low complexity
xnview CWE-119
7.8
2019-03-21 CVE-2015-6458 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Moxa Softcms 1.2/1.3
Moxa SoftCMS 1.3 and prior is susceptible to a buffer overflow condition that may crash or allow remote code execution.
network
low complexity
moxa CWE-119
8.8
2019-03-21 CVE-2015-6457 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Moxa Softcms 1.2/1.3
Moxa SoftCMS 1.3 and prior is susceptible to a buffer overflow condition that may crash or allow remote code execution.
network
low complexity
moxa CWE-119
8.8
2019-03-21 CVE-2019-9895 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
In PuTTY versions before 0.71 on Unix, a remotely triggerable buffer overflow exists in any kind of server-to-client forwarding.
network
low complexity
putty fedoraproject CWE-119
critical
9.8
2019-03-21 CVE-2018-20642 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Entrepreneur JOB Portal Script Project Entrepreneur JOB Portal Script 3.0.1
PHP Scripts Mall Entrepreneur Job Portal Script 3.0.1 allows remote attackers to cause a denial of service (outage of profile editing) via crafted JavaScript code in the KeySkills field.
6.5
2019-03-21 CVE-2018-20637 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Chartered Accountant : Auditor Website Project Chartered Accountant : Auditor Website 2.0.1
PHP Scripts Mall Chartered Accountant : Auditor Website 2.0.1 allows remote attackers to cause a denial of service (unrecoverable blank profile) via crafted JavaScript code in the First Name and Last Name field.
network
low complexity
chartered-accountant CWE-119
6.5
2019-03-21 CVE-2018-20634 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Advance B2B Script Project Advance B2B Script 2.1.4
PHP Scripts Mall Advance B2B Script 2.1.4 allows remote attackers to cause a denial of service (changed Page structure) via JavaScript code in the First Name field.
network
low complexity
advance-b2b-script-project CWE-119
6.5
2019-03-21 CVE-2018-20340 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Yubico libu2f-host 1.1.6 contains unchecked buffers in devs.c, which could enable a malicious token to exploit a buffer overflow.
low complexity
yubico debian CWE-119
6.8
2019-03-21 CVE-2018-1992 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in IBM products
The IBM Power 9 OP910, OP920, and FW910 boot firmware's bootloader is responsible for loading and validating the initial boot firmware image that drives the rest of the system's hardware initialization.
local
high complexity
ibm CWE-119
6.4
2019-03-21 CVE-2018-14745 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Samsung Galaxy S6 Firmware G920Fxxu5Eqh7
Buffer overflow in prot_get_ring_space in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker (who has obtained code execution on the Wi-Fi chip) to overwrite kernel memory due to improper validation of the ring buffer read pointer.
low complexity
samsung CWE-119
8.8