Falhas do tipo CWE-120

3.164 resultados

Estouro de buffer clássico

A aplicação copia dados em um buffer sem validar o tamanho, permitindo que um atacante sobrescreva memória adjacente. Isso pode corromper variáveis, desviar o fluxo de execução ou injetar código malicioso que será executado com os mesmos privilégios da aplicação.

Exemplo

Um formulário web aceita um nome de usuário e o copia direto em um array de 32 bytes sem checar comprimento. Um atacante envia 200 bytes; o excesso sobrescreve o endereço de retorno da função, desviando a execução para código dele. Comum em CGI antigos, serviços network e binários C/C++ mal escritos.

Como mitigar

Use funções seguras (strncpy, strlcpy em vez de strcpy; snprintf em vez de sprintf) que respeitam limites. Sempre valide e sanitize entrada externa antes de copiar. Em C moderno, considere AddressSanitizer ou ferramentas estáticas para detectar cópias inseguras em tempo de compilação.

CVE-2024-40415CRITICALA vulnerability in /goform/SetStaticRouteCfg in the sub_519F4 function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflowEPSS 0.5%CVE-2024-25254CRITICALSuperScan v4.1 was discovered to contain a buffer overflow via the Hostname/IP parameter.EPSS 0.5%CVE-2026-10163HIGHEdimax BR-6478AC POST Request formUSBAccount buffer overflowEPSS 0.5%CVE-2024-52061HIGHPotential stack buffer overflow when parsing an XML typeEPSS 0.5%CVE-2024-24731HIGHSilicon Labs Gecko OS http_download Stack-based Buffer OverflowEPSS 0.5%CVE-2022-20945HIGHCisco Catalyst 9100 Series Access Points Association Request Denial of Service VulnerabilityEPSS 0.5%CVE-2026-20348HIGHClamAV XAR File Format Processing Memory Corruption VulnerabilityEPSS 0.5%CVE-2025-44879HIGHWS-WN572HP3 V230525 was discovered to contain a buffer overflow in the component /www/cgi-bin/upload.cgi. This vulnerability allows attackerEPSS 0.5%CVE-2025-28361HIGHUnauthorized stack overflow vulnerability in Telesquare TLR-2005KSH v.1.1.4 allows a remote attacker to obtain sensitive information via theEPSS 0.5%CVE-2026-40067HIGHBIG-IP APM VulnerabilityEPSS 0.5%CVE-2024-28564MEDIUMBuffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the IEPSS 0.5%CVE-2020-37199MEDIUMNBMonitor 1.6.6.0 - 'Key' Denial of ServiceEPSS 0.5%CVE-2026-38718HIGHInHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a buffer overflow vulnerEPSS 0.5%CVE-2020-37196MEDIUMDnss Domain Name Search Software - 'Key' Denial of ServiceEPSS 0.5%CVE-2026-14970HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.5%CVE-2020-37197MEDIUMDnss Domain Name Search Software - 'Name' Denial of ServiceEPSS 0.5%CVE-2026-91953HIGHFreeRDP before 3.31.0 Heap Buffer Overflow via LB_LOAD_BALANCE_INFOEPSS 0.5%CVE-2025-70314CRITICALwebfsd 1.21 is vulnerable to a Buffer Overflow via a crafted request. This is due to the filename variableEPSS 0.5%CVE-2023-52370CRITICALStack overflow vulnerability in the network acceleration module.Successful exploitation of this vulnerability may cause unauthorized file acEPSS 0.5%CVE-2024-1969HIGHHeap buffer overflowEPSS 0.5%