Fallos del tipo CWE-121

3831 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2026-2908HIGHTenda HG9 Loopback Detection Configuration Endpoint formLoopBack stack-based overflowEPSS 1.0%CVE-2026-2874HIGHTenda A21 fast_setting_wifi_set form_fast_setting_wifi_set stack-based overflowEPSS 1.0%CVE-2022-2078—A vulnerability was found in the Linux kernel's nft_set_desc_concat_parse() function .This flaw allows an attacker to trigger a buffer overfEPSS 1.0%CVE-2026-67192CRITICALXlight FTP Server < 3.9.5 Pre-Auth Stack Buffer Overflow via SSH GCM CipherEPSS 1.0%CVE-2025-12259HIGHTOTOLINK A3300R POST Parameter cstecgi.cgi setScheduleCfg stack-based overflowEPSS 1.0%CVE-2025-5855HIGHTenda AC6 SetRebootTimer formSetRebootTimer stack-based overflowEPSS 1.0%CVE-2025-12260HIGHTOTOLINK A3300R POST Parameter cstecgi.cgi setSyslogCfg stack-based overflowEPSS 1.0%CVE-2025-12258HIGHTOTOLINK A3300R POST Parameter cstecgi.cg setOpModeCfg stack-based overflowEPSS 1.0%CVE-2024-35279HIGHA stack-based buffer overflow [CWE-121] vulnerability in Fortinet FortiOS version 7.2.4 through 7.2.8 and version 7.4.0 through 7.4.4 allowsEPSS 1.0%CVE-2023-51631MEDIUMD-Link DIR-X3260 prog.cgi SetUsersSettings Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 1.0%CVE-2023-6322HIGHStack-based buffer overflow in message parser functionalityEPSS 1.0%CVE-2026-7546CRITICALTotolink NR1800X lighttpd find_host_ip stack-based overflowEPSS 1.0%CVE-2026-76008CRITICALComfast CF-N1-S URI Parameter Parsing mbox-config get_para_from_uri stack-based overflowEPSS 1.0%CVE-2026-77946CRITICALTRENDnet TEW-821DAP NTP Timezone Configuration apply_time.cgi uci_safe_get stack-based overflowEPSS 1.0%CVE-2023-35056HIGHA buffer overflow vulnerability exists in the httpd next_page functionality of Yifan YF325 v1.0_20221108. A specially crafted network requesEPSS 1.0%CVE-2023-35055HIGHA buffer overflow vulnerability exists in the httpd next_page functionality of Yifan YF325 v1.0_20221108. A specially crafted network requesEPSS 1.0%CVE-2010-20122CRITICALXftp FTP Client <= 3.0 PWD Response Buffer OverflowEPSS 1.0%CVE-2026-3976HIGHTenda W3 POST Parameter WifiMacFilterSet formWifiMacFilterSet stack-based overflowEPSS 1.0%CVE-2026-4008HIGHTenda W3 POST Parameter wifiSSIDset stack-based overflowEPSS 1.0%CVE-2026-3807HIGHTenda FH1202 AdvSetWrlsafeset formWrlsafeset stack-based overflowEPSS 1.0%