Weaknesses of type CWE-120

3,165 results

Estouro de buffer clássico

A aplicação copia dados para um buffer sem validar o tamanho, permitindo que um atacante sobrescreva memória adjacente, incluindo endereços de retorno ou ponteiros de função. Isso resulta na execução de código arbitrário com os privilégios da aplicação.

Example

Um programa lê uma entrada do usuário com gets() ou strcpy() sem limitar quantos bytes podem ser copiados. Um atacante fornece uma entrada maior que o buffer, sobrescrevendo a pilha e injetando código malicioso que será executado quando a função retornar.

How to mitigate

Use funções seguras que validam limites (strncpy, snprintf, fgets) e compile com proteções de pilha ativadas (-fstack-protector-all no GCC). Além disso, implemente validação de entrada no tamanho esperado e considere linguagens com gerenciamento automático de memória para novos projetos.

CVE-2018-25294HIGHCEWE Photoshow 6.3.4 Buffer Overflow Denial of ServiceEPSS 0.4%CVE-2021-1439HIGHCisco Aironet Access Points FlexConnect Multicast DNS Denial of Service VulnerabilityEPSS 0.4%CVE-2024-41217MEDIUMA heap-based buffer overflow in tsMuxer version nightly-2024-05-10-02-00-45 allows attackers to cause Denial of Service (DoS) via a crafted EPSS 0.4%CVE-2024-53901MEDIUMThe Imager package before 1.025 for Perl has a heap-based buffer overflow leading to denial of service, or possibly unspecified other impactEPSS 0.4%CVE-2020-37206MEDIUMShareAlarmPro Advanced Network Access Control - 'Key' Denial of ServiceEPSS 0.4%CVE-2026-21639HIGHA malicious actor in Wi-Fi range of the affected product could leverage a vulnerability in the airMAX Wireless Protocol to achieve a remote EPSS 0.4%CVE-2026-8247HIGHWatchGuard Firebox admd Out of Bounds Write VulnerabilityEPSS 0.4%CVE-2020-37207MEDIUMSpotDialup 1.6.7 - 'Key' Denial of ServiceEPSS 0.4%CVE-2020-37109MEDIUMaSc TimeTables 2020.11.4 - Denial of ServiceEPSS 0.4%CVE-2026-3082HIGHGStreamer JPEG Parser Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-76703MEDIUMAuthenticated Buffer Overflow Vulnerability in HPE Networking EdgeConnect SD-WAN Gateways Web-Based Management Interface Causes Denial-of-ServiceEPSS 0.4%CVE-2024-48713MEDIUMIn TP-Link TL-WDR7660 1.0, the wacWhitelistJsonToBin function handles the parameter string name without checking it, which can lead to stackEPSS 0.4%CVE-2024-48714MEDIUMIn TP-Link TL-WDR7660 v1.0, the guestRuleJsonToBin function handles the parameter string name without checking it, which can lead to stack oEPSS 0.4%CVE-2023-49700MEDIUMBuffer Copy Without Checking size of input in IMSEPSS 0.4%CVE-2024-48710MEDIUMIn TP-Link TL-WDR7660 1.0, the wlanTimerRuleJsonToBin function handles the parameter string name without checking it, which can lead to stacEPSS 0.4%CVE-2025-67074MEDIUMA Buffer overflow vulnerability in function fromAdvSetMacMtuWan of bin httpd in Tenda AC10V4.0 V16.03.10.20 allows remote attackers to causeEPSS 0.4%CVE-2026-82479MEDIUMNASA cFS SBN TCP sbn_tcp_if.c OS_read buffer overflowEPSS 0.4%CVE-2025-30265LOWQTS, QuTS heroEPSS 0.4%CVE-2023-52366HIGHOut-of-bounds read vulnerability in the smart activity recognition module.Successful exploitation of this vulnerability may cause features tEPSS 0.4%CVE-2022-47095HIGHGPAC MP4box 2.1-DEV-rev574-g9d5bb184b is vulnerable to Buffer overflow in hevc_parse_vps_extension function of media_tools/av_parsers.cEPSS 0.4%