Weaknesses of type CWE-121

3,839 results

Estouro de buffer na pilha

Ocorre quando um programa escreve mais dados em um buffer alocado na pilha do que ele pode conter, sobrescrevendo dados adjacentes (variáveis, endereços de retorno, ponteiros). Um atacante pode explorar isso para executar código arbitrário ou causar travamento.

Example

Um programa lê uma string do usuário com gets() ou strcpy() sem validar o tamanho, copiando 500 bytes para um buffer de 64 bytes. O excesso sobrescreve o endereço de retorno da função, permitindo desviar a execução para código malicioso.

How to mitigate

Use funções seguras (strncpy, fgets, snprintf) que aceitam limite de bytes; implemente verificações de limites explícitas no código; ative proteções do compilador/SO (stack canaries, DEP/NX, ASLR); use linguagens com verificação automática de limites ou ferramentas de análise estática.

CVE-2026-55141HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-64912HIGHMicrosoft Access Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-66807HIGHMicrosoft Office Graphics Component Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-11523HIGHTenda W20E Web Management PortalAuth formPortalAuth stack-based overflowEPSS 0.5%CVE-2026-68817HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-64919HIGHMicrosoft Access Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-11504HIGHTenda CX12L Wi-Fi Schedule Configuration Endpoint openSchedWifi setSchedWifi stack-based overflowEPSS 0.5%CVE-2026-11524HIGHTenda W20E Web Management modifyWifiFilterRules stack-based overflowEPSS 0.5%CVE-2026-63526HIGHMicrosoft Office Graphics Component Remote Code Execution VulnerabilityEPSS 0.5%CVE-2018-8839—Delta PMSoft versions 2.10 and prior have multiple stack-based buffer overflow vulnerabilities where a .ppm file can introduce a value largeEPSS 0.5%CVE-2024-28283MEDIUMThere is stack-based buffer overflow vulnerability in pc_change_act function in Linksys E1000 router firmware version v.2.1.03 and before, lEPSS 0.5%CVE-2018-11463—A vulnerability has been identified in SINUMERIK 808D V4.7 (All versions), SINUMERIK 808D V4.8 (All versions), SINUMERIK 828D V4.7 (All versEPSS 0.5%CVE-2024-41586HIGHA stack-based Buffer Overflow vulnerability in DrayTek Vigor310 devices through 4.3.2.6 allows a remote attacker to execute arbitrary code vEPSS 0.5%CVE-2025-70252HIGHAn issue was discovered in /goform/WifiWpsStart in Tenda AC6V2.0 V15.03.06.23_multi. The index and mode are controllable. If the conditions EPSS 0.5%CVE-2025-60570HIGHD-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formLogDnsquery.EPSS 0.5%CVE-2023-51955MEDIUMTenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formSetIptv.EPSS 0.5%CVE-2026-10158HIGHTRENDnet TEW-432BRP formPortFw stack-based overflowEPSS 0.5%CVE-2025-60572HIGHD-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formAdvNetwork.EPSS 0.5%CVE-2026-10159HIGHTRENDnet TEW-432BRP formSysLog stack-based overflowEPSS 0.5%CVE-2026-10120HIGHTRENDnet TEW-432BRP formSetFirewallRule stack-based overflowEPSS 0.5%