Weaknesses of type CWE-120

3,164 results

Estouro de buffer clássico

A aplicação copia dados para um buffer sem validar o tamanho, permitindo que um atacante sobrescreva memória adjacente, incluindo endereços de retorno ou ponteiros de função. Isso resulta na execução de código arbitrário com os privilégios da aplicação.

Example

Um programa lê uma entrada do usuário com gets() ou strcpy() sem limitar quantos bytes podem ser copiados. Um atacante fornece uma entrada maior que o buffer, sobrescrevendo a pilha e injetando código malicioso que será executado quando a função retornar.

How to mitigate

Use funções seguras que validam limites (strncpy, snprintf, fgets) e compile com proteções de pilha ativadas (-fstack-protector-all no GCC). Além disso, implemente validação de entrada no tamanho esperado e considere linguagens com gerenciamento automático de memória para novos projetos.

CVE-2025-5073MEDIUMFreeFloat FTP Server MKDIR Command buffer overflowEPSS 0.7%CVE-2025-4848MEDIUMFreeFloat FTP Server RECV Command buffer overflowEPSS 0.7%CVE-2025-4252MEDIUMPCMan FTP Server APPEND Command buffer overflowEPSS 0.7%CVE-2025-5074MEDIUMFreeFloat FTP Server PROMPT Command buffer overflowEPSS 0.7%CVE-2025-4251MEDIUMPCMan FTP Server RMDIR Command buffer overflowEPSS 0.7%CVE-2025-4289MEDIUMPCMan FTP Server RNTO Command buffer overflowEPSS 0.7%CVE-2025-4844MEDIUMFreeFloat FTP Server CD Command buffer overflowEPSS 0.7%CVE-2025-4846MEDIUMFreeFloat FTP Server MPUT Command buffer overflowEPSS 0.7%CVE-2025-4237MEDIUMPCMan FTP Server MDELETE Command buffer overflowEPSS 0.7%CVE-2025-5052MEDIUMFreeFloat FTP Server LS Command buffer overflowEPSS 0.7%CVE-2025-4288MEDIUMPCMan FTP Server RNFR Command buffer overflowEPSS 0.7%CVE-2026-1686HIGHTotolink A3600R app.so setAppEasyWizardConfig buffer overflowEPSS 0.7%CVE-2025-30422MEDIUMA buffer overflow was addressed with improved input validation. This issue is fixed in AirPlay audio SDK 2.7.1 and AirPlay video SDK 3.6.0.1EPSS 0.7%CVE-2025-3845MEDIUMmarkparticle WebServer buffer.cpp HasWritten buffer overflowEPSS 0.7%CVE-2026-24115CRITICALAn issue was discovered in Tenda W20E V4.0br_V15.11.0.6. Failure to validate the sizes of `gstup` and `gstdwn` before concatenating them intEPSS 0.7%CVE-2022-23462MEDIUMStack Buffer Overflow in iowowEPSS 0.7%CVE-2025-67073CRITICALA Buffer overflow vulnerability in function fromAdvSetMacMtuWan of bin httpd in Tenda AC10V4.0 V16.03.10.20 allows remote attackers to causeEPSS 0.7%CVE-2025-12272HIGHTenda CH22 addressNat fromAddressNat buffer overflowEPSS 0.7%CVE-2025-13400HIGHTenda CH22 WrlExtraGet formWrlExtraGet buffer overflowEPSS 0.7%CVE-2024-42813CRITICALIn TRENDnet TEW-752DRU FW1.03B01, there is a buffer overflow vulnerability due to the lack of length verification for the service field in gEPSS 0.7%