Vulnerabilities > Out-of-bounds Write

DATE CVE VULNERABILITY TITLE RISK
2021-12-13 CVE-2021-43814 Out-of-bounds Write vulnerability in Rizin
Rizin is a UNIX-like reverse engineering framework and command-line toolset.
network
rizin CWE-787
6.8
2021-12-13 CVE-2021-39048 Out-of-bounds Write vulnerability in IBM products
IBM Spectrum Protect Client 7.1 and 8.1 is vulnerable to a stack based buffer overflow, caused by improper bounds checking.
local
low complexity
ibm CWE-787
5.5
2021-12-13 CVE-2021-39049 Out-of-bounds Write vulnerability in IBM I2 Analysts Notebook
IBM i2 Analyst's Notebook 9.2.0, 9.2.1, and 9.2.2 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking.
local
low complexity
ibm CWE-787
4.6
2021-12-13 CVE-2021-39050 Out-of-bounds Write vulnerability in IBM I2 Analysts Notebook
IBM i2 Analyst's Notebook 9.2.0, 9.2.1, and 9.2.2 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking.
local
low complexity
ibm CWE-787
4.6
2021-12-13 CVE-2021-43983 Out-of-bounds Write vulnerability in We-Con Levistudiou
WECON LeviStudioU Versions 2019-09-21 and prior are vulnerable to multiple stack-based buffer overflow instances while parsing project files, which may allow an attacker to execute arbitrary code.
network
we-con CWE-787
6.8
2021-12-09 CVE-2021-43071 Out-of-bounds Write vulnerability in Fortinet Fortiweb
A heap-based buffer overflow in Fortinet FortiWeb version 6.4.1 and 6.4.0, version 6.3.15 and below, version 6.2.6 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests to the LogReport API controller.
network
low complexity
fortinet CWE-787
6.5
2021-12-09 CVE-2021-36194 Out-of-bounds Write vulnerability in Fortinet Fortiweb
Multiple stack-based buffer overflows in the API controllers of FortiWeb 6.4.1, 6.4.0, and 6.3.0 through 6.3.15 may allow an authenticated attacker to achieve arbitrary code execution via specially crafted requests.
network
low complexity
fortinet CWE-787
6.5
2021-12-08 CVE-2021-43527 Out-of-bounds Write vulnerability in multiple products
NSS (Network Security Services) versions prior to 3.73 or 3.68.1 ESR are vulnerable to a heap overflow when handling DER-encoded DSA or RSA-PSS signatures.
network
low complexity
mozilla netapp oracle starwindsoftware CWE-787
critical
9.8
2021-12-08 CVE-2021-43534 Out-of-bounds Write vulnerability in multiple products
Mozilla developers and community members reported memory safety bugs present in Firefox 93 and Firefox ESR 91.2.
6.8
2021-12-08 CVE-2021-36173 Out-of-bounds Write vulnerability in Fortinet Fortios
A heap-based buffer overflow in the firmware signature verification function of FortiOS versions 7.0.1, 7.0.0, 6.4.0 through 6.4.6, 6.2.0 through 6.2.9, and 6.0.0 through 6.0.13 may allow an attacker to execute arbitrary code via specially crafted installation images.
network
fortinet CWE-787
6.8