Weaknesses of type CWE-120

3,164 results

Estouro de buffer clássico

A aplicação copia dados para um buffer sem validar o tamanho, permitindo que um atacante sobrescreva memória adjacente, incluindo endereços de retorno ou ponteiros de função. Isso resulta na execução de código arbitrário com os privilégios da aplicação.

Example

Um programa lê uma entrada do usuário com gets() ou strcpy() sem limitar quantos bytes podem ser copiados. Um atacante fornece uma entrada maior que o buffer, sobrescrevendo a pilha e injetando código malicioso que será executado quando a função retornar.

How to mitigate

Use funções seguras que validam limites (strncpy, snprintf, fgets) e compile com proteções de pilha ativadas (-fstack-protector-all no GCC). Além disso, implemente validação de entrada no tamanho esperado e considere linguagens com gerenciamento automático de memória para novos projetos.

CVE-2024-40415CRITICALA vulnerability in /goform/SetStaticRouteCfg in the sub_519F4 function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflowEPSS 0.5%CVE-2024-25254CRITICALSuperScan v4.1 was discovered to contain a buffer overflow via the Hostname/IP parameter.EPSS 0.5%CVE-2026-10163HIGHEdimax BR-6478AC POST Request formUSBAccount buffer overflowEPSS 0.5%CVE-2024-52061HIGHPotential stack buffer overflow when parsing an XML typeEPSS 0.5%CVE-2024-24731HIGHSilicon Labs Gecko OS http_download Stack-based Buffer OverflowEPSS 0.5%CVE-2022-20945HIGHCisco Catalyst 9100 Series Access Points Association Request Denial of Service VulnerabilityEPSS 0.5%CVE-2026-20348HIGHClamAV XAR File Format Processing Memory Corruption VulnerabilityEPSS 0.5%CVE-2025-44879HIGHWS-WN572HP3 V230525 was discovered to contain a buffer overflow in the component /www/cgi-bin/upload.cgi. This vulnerability allows attackerEPSS 0.5%CVE-2025-28361HIGHUnauthorized stack overflow vulnerability in Telesquare TLR-2005KSH v.1.1.4 allows a remote attacker to obtain sensitive information via theEPSS 0.5%CVE-2026-40067HIGHBIG-IP APM VulnerabilityEPSS 0.5%CVE-2024-28564MEDIUMBuffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the IEPSS 0.5%CVE-2020-37199MEDIUMNBMonitor 1.6.6.0 - 'Key' Denial of ServiceEPSS 0.5%CVE-2026-38718HIGHInHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a buffer overflow vulnerEPSS 0.5%CVE-2020-37196MEDIUMDnss Domain Name Search Software - 'Key' Denial of ServiceEPSS 0.5%CVE-2026-14970HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.5%CVE-2020-37197MEDIUMDnss Domain Name Search Software - 'Name' Denial of ServiceEPSS 0.5%CVE-2026-91953HIGHFreeRDP before 3.31.0 Heap Buffer Overflow via LB_LOAD_BALANCE_INFOEPSS 0.5%CVE-2025-70314CRITICALwebfsd 1.21 is vulnerable to a Buffer Overflow via a crafted request. This is due to the filename variableEPSS 0.5%CVE-2023-52370CRITICALStack overflow vulnerability in the network acceleration module.Successful exploitation of this vulnerability may cause unauthorized file acEPSS 0.5%CVE-2024-1969HIGHHeap buffer overflowEPSS 0.5%