Vulnerabilities > Out-of-bounds Write

DATE CVE VULNERABILITY TITLE RISK
2018-08-15 CVE-2018-8355 Out-of-bounds Write vulnerability in Microsoft Chakracore, Edge and Internet Explorer
A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka "Scripting Engine Memory Corruption Vulnerability." This affects ChakraCore, Internet Explorer 11, Microsoft Edge.
network
high complexity
microsoft CWE-787
7.6
2018-08-15 CVE-2018-8302 Out-of-bounds Write vulnerability in Microsoft Exchange Server 2010/2013/2016
A remote code execution vulnerability exists in Microsoft Exchange software when the software fails to properly handle objects in memory, aka "Microsoft Exchange Memory Corruption Vulnerability." This affects Microsoft Exchange Server.
network
low complexity
microsoft CWE-787
critical
10.0
2018-08-15 CVE-2018-8273 Out-of-bounds Write vulnerability in Microsoft SQL Server 2016/2017
A buffer overflow vulnerability exists in the Microsoft SQL Server that could allow remote code execution on an affected system, aka "Microsoft SQL Server Remote Code Execution Vulnerability." This affects Microsoft SQL Server.
network
low complexity
microsoft CWE-787
critical
10.0
2018-08-15 CVE-2018-8266 Out-of-bounds Write vulnerability in Microsoft Chakracore and Edge
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore.
network
high complexity
microsoft CWE-787
7.6
2018-08-15 CVE-2018-6973 Out-of-bounds Write vulnerability in VMWare Fusion and Workstation
VMware Workstation (14.x before 14.1.3) and Fusion (10.x before 10.1.3) contain an out-of-bounds write vulnerability in the e1000 device.
local
low complexity
vmware CWE-787
7.2
2018-08-14 CVE-2018-3938 Out-of-bounds Write vulnerability in Sony products
An exploitable stack-based buffer overflow vulnerability exists in the 802dot1xclientcert.cgi functionality of Sony IPELA E Series Camera G5 firmware 1.87.00.
network
low complexity
sony CWE-787
7.5
2018-08-13 CVE-2018-10636 Out-of-bounds Write vulnerability in Deltaww Cncsoft and Screeneditor
CNCSoft Version 1.00.83 and prior with ScreenEditor Version 1.00.54 has multiple stack-based buffer overflow vulnerabilities that could cause the software to crash due to lacking user input validation before copying data from project files onto the stack.
network
deltaww CWE-787
critical
9.3
2018-08-13 CVE-2018-5924 Out-of-bounds Write vulnerability in HP products
A security vulnerability has been identified with certain HP Inkjet printers.
network
low complexity
hp CWE-787
7.5
2018-08-08 CVE-2018-15209 Out-of-bounds Write vulnerability in multiple products
ChopUpSingleUncompressedStrip in tif_dirread.c in LibTIFF 4.0.9 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted TIFF file, as demonstrated by tiff2pdf.
6.8
2018-08-06 CVE-2017-16252 Out-of-bounds Write vulnerability in Insteon HUB Firmware 1012
Specially crafted commands sent through the PubNub service in Insteon Hub 2245-222 with firmware version 1012 can cause a stack-based buffer overflow overwriting arbitrary data.
network
low complexity
insteon CWE-787
8.1