Fallos del tipo CWE-121

3831 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2026-76003CRITICALUTT HiPER 1200GW formGroupConfig strcpy stack-based overflowEPSS 0.8%CVE-2026-6197HIGHTenda F456 AdvSetWrlsafeset formWrlsafeset stack-based overflowEPSS 0.8%CVE-2023-23780HIGHA stack-based buffer overflow in Fortinet FortiWeb version 7.0.0 through 7.0.1, Fortinet FortiWeb version 6.3.6 through 6.3.19, Fortinet ForEPSS 0.8%CVE-2026-6194HIGHTotolink A3002MU HTTP Request formWlanSetup sub_410188 stack-based overflowEPSS 0.8%CVE-2026-9628HIGHUTT HiPER 1200GW Web Management formPptpClientConfig stack-based overflowEPSS 0.8%CVE-2026-76004CRITICALUTT HiPER 1250GW HTTP aspApBasicConfigUrcp strcpy stack-based overflowEPSS 0.8%CVE-2026-4489HIGHTenda A18 Pro fast_setting_wifi_set form_fast_setting_wifi_set stack-based overflowEPSS 0.8%CVE-2025-15177HIGHTenda WH450 HTTP Request SetIpBind stack-based overflowEPSS 0.8%CVE-2025-15178HIGHTenda WH450 HTTP Request VirtualSer stack-based overflowEPSS 0.8%CVE-2025-45789MEDIUMTOTOLINK A3100R V5.9c.1527 is vulnerable to buffer overflow via the urlKeyword parameter in setParentalRules.EPSS 0.8%CVE-2023-54330CRITICALInbit Messenger 4.9.0 - Unauthenticated Remote SEH OverflowEPSS 0.8%CVE-2025-45788MEDIUMTOTOLINK A3100R V5.9c.1527 is vulnerable to Buffer Overflow via the comment parameter in setMacFilterRules.EPSS 0.8%CVE-2025-45787MEDIUMTOTOLINK A3100R V5.9c.1527 is vulnerable to Buffer Overflow viathe comment parameter in setIpPortFilterRules.EPSS 0.8%CVE-2025-45790MEDIUMTOTOLINK A3100R V5.9c.1527 is vulnerable to Buffer Overflow via the priority parameter in the setMacQos interface of /lib/cste_modules/firewEPSS 0.8%CVE-2025-15164HIGHTenda WH450 SafeMacFilter stack-based overflowEPSS 0.8%CVE-2025-15162HIGHTenda WH450 RouteStatic stack-based overflowEPSS 0.8%CVE-2025-15163HIGHTenda WH450 SafeEmailFilter stack-based overflowEPSS 0.8%CVE-2024-32299HIGHTenda FH1203 v2.0.1.6 firmware has a stack overflow vulnerability via the PPW parameter in the fromWizardHandle function.EPSS 0.8%CVE-2024-26010MEDIUMA stack-based buffer overflow in Fortinet FortiPAM version 1.2.0, 1.1.0 through 1.1.2, 1.0.0 through 1.0.3, FortiWeb, FortiAuthenticator, FoEPSS 0.8%CVE-2025-15190HIGHD-Link DWR-M920 formFilter sub_42261C stack-based overflowEPSS 0.8%