Vulnerabilities (CVE)

Filtered by CWE-120
Total 2602 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-51771 1 Starnight 1 Micro Http Server 2025-04-23 N/A 9.8 CRITICAL
In MicroHttpServer (aka Micro HTTP Server) through a8ab029, _ParseHeader in lib/server.c allows a one-byte recv buffer overflow via a long URI.
CVE-2023-47091 1 Stormshield 1 Stormshield Network Security 2025-04-23 N/A 7.5 HIGH
An issue was discovered in Stormshield Network Security (SNS) SNS 4.3.13 through 4.3.22 before 4.3.23, SNS 4.6.0 through 4.6.9 before 4.6.10, and SNS 4.7.0 through 4.7.1 before 4.7.2. An attacker can overflow the cookie threshold, making an IPsec connection impossible.
CVE-2022-45997 1 Tenda 2 W15e, W20e Firmware 2025-04-22 N/A 7.2 HIGH
Tenda W20E V16.01.0.6(3392) is vulnerable to Buffer Overflow.
CVE-2025-3786 1 Tenda 2 Ac15, Ac15 Firmware 2025-04-22 N/A 8.8 HIGH
A vulnerability was found in Tenda AC15 up to 15.03.05.19 and classified as critical. This issue affects the function fromSetWirelessRepeat of the file /goform/WifiExtraSet. The manipulation of the argument mac leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
CVE-2022-25712 1 Qualcomm 92 Aqt1000, Aqt1000 Firmware, Mdm9150 and 89 more 2025-04-22 N/A 7.8 HIGH
Memory corruption in camera due to buffer copy without checking size of input in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Mobile, Snapdragon Wearables
CVE-2022-25724 1 Qualcomm 402 Apq8009, Apq8009 Firmware, Apq8009w and 399 more 2025-04-22 N/A 7.8 HIGH
Memory corruption in graphics due to buffer overflow while validating the user address in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
CVE-2025-3854 2025-04-22 N/A 8.0 HIGH
A vulnerability, which was classified as critical, was found in H3C GR-3000AX up to V100R006. Affected is the function EnableIpv6/UpdateWanModeMulti/UpdateIpv6Params/EditWlanMacList/Edit_List_SSID of the file /goform/aspForm of the component HTTP POST Request Handler. The manipulation of the argument param leads to buffer overflow. The attack needs to be initiated within the local network. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component. Other functions might be affected as well.
CVE-2025-3845 2025-04-21 N/A 7.3 HIGH
A vulnerability was found in markparticle WebServer up to 1.0. It has been declared as critical. Affected by this vulnerability is the function Buffer::HasWritten of the file code/buffer/buffer.cpp. The manipulation of the argument writePos_ leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
CVE-2022-45666 1 Tenda 2 I22, I22 Firmware 2025-04-17 N/A 7.5 HIGH
Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the list parameter in the formwrlSSIDset function.
CVE-2022-45665 1 Tenda 2 I22, I22 Firmware 2025-04-17 N/A 7.5 HIGH
Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the funcpara1 parameter in the formSetCfm function.
CVE-2022-46536 1 Tenda 2 F1203, F1203 Firmware 2025-04-16 N/A 7.5 HIGH
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the limitSpeedUp parameter at /goform/SetClientState.
CVE-2019-11851 1 Sierrawireless 13 Aleos, Es440, Es450 and 10 more 2025-04-16 N/A 9.8 CRITICAL
The ACENet service in Sierra Wireless ALEOS before 4.4.9, 4.5.x through 4.9.x before 4.9.5, and 4.10.x through 4.13.x before 4.14.0 allows remote attackers to execute arbitrary code via a buffer overflow.
CVE-2022-46541 1 Tenda 2 F1203, F1203 Firmware 2025-04-16 N/A 7.5 HIGH
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the ssid parameter at /goform/fast_setting_wifi_set.
CVE-2022-46537 1 Tenda 2 F1203, F1203 Firmware 2025-04-16 N/A 7.5 HIGH
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the security parameter at /goform/WifiBasicSet.
CVE-2022-46539 1 Tenda 2 F1203, F1203 Firmware 2025-04-16 N/A 7.5 HIGH
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the security_5g parameter at /goform/WifiBasicSet.
CVE-2022-46540 1 Tenda 2 F1203, F1203 Firmware 2025-04-16 N/A 7.5 HIGH
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the entrys parameter at /goform/addressNat.
CVE-2023-6175 1 Wireshark 1 Wireshark 2025-04-16 N/A 7.8 HIGH
NetScreen file parser crash in Wireshark 4.0.0 to 4.0.10 and 3.6.0 to 3.6.18 allows denial of service via crafted capture file
CVE-2022-46545 1 Tenda 2 F1203, F1203 Firmware 2025-04-16 N/A 7.5 HIGH
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the page parameter at /goform/NatStaticSetting.
CVE-2022-46549 1 Tenda 2 F1203, F1203 Firmware 2025-04-16 N/A 7.5 HIGH
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the deviceId parameter at /goform/saveParentControlInfo.
CVE-2022-46546 1 Tenda 2 F1203, F1203 Firmware 2025-04-16 N/A 7.5 HIGH
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the entrys parameter at /goform/RouteStatic.