Falhas do tipo CWE-120

3.164 resultados

Estouro de buffer clássico

A aplicação copia dados em um buffer sem validar o tamanho, permitindo que um atacante sobrescreva memória adjacente. Isso pode corromper variáveis, desviar o fluxo de execução ou injetar código malicioso que será executado com os mesmos privilégios da aplicação.

Exemplo

Um formulário web aceita um nome de usuário e o copia direto em um array de 32 bytes sem checar comprimento. Um atacante envia 200 bytes; o excesso sobrescreve o endereço de retorno da função, desviando a execução para código dele. Comum em CGI antigos, serviços network e binários C/C++ mal escritos.

Como mitigar

Use funções seguras (strncpy, strlcpy em vez de strcpy; snprintf em vez de sprintf) que respeitam limites. Sempre valide e sanitize entrada externa antes de copiar. Em C moderno, considere AddressSanitizer ou ferramentas estáticas para detectar cópias inseguras em tempo de compilação.

CVE-2023-46271CRITICALExtreme Networks IQ Engine before 10.6r1a, and through 10.6r4 before 10.6r5, has a buffer overflow. This issue arises from the ah_webui servEPSS 0.8%CVE-2022-41484HIGHTenda AC1900 AP500(US)_V1_180320(Beta) was discovered to contain a buffer overflow in the 0x32384 function. This vulnerability allows attackEPSS 0.8%CVE-2026-2202HIGHTenda AC8 httpd WifiGuestSet fromSetWifiGusetBasic buffer overflowEPSS 0.8%CVE-2022-41482HIGHTenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x47c5dc function. This vulnerabilityEPSS 0.8%CVE-2022-41480HIGHTenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x475dc function. This vulnerability EPSS 0.8%CVE-2026-2203HIGHTenda AC8 Embedded Httpd Service fast_setting_wifi_set buffer overflowEPSS 0.8%CVE-2026-2137HIGHTenda TX3 SetIpMacBind buffer overflowEPSS 0.8%CVE-2026-2138HIGHTenda TX9 SetStaticRouteCfg sub_42D03C buffer overflowEPSS 0.8%CVE-2026-2140HIGHTenda TX9 setMacFilterCfg sub_4223E0 buffer overflowEPSS 0.8%CVE-2025-9443HIGHTenda CH22 editUserName formeditUserName buffer overflowEPSS 0.8%CVE-2026-42859HIGHNeat VNC: Buffer overflow due to oversized RSA public keysEPSS 0.8%CVE-2023-32968MEDIUMQTS, QuTS heroEPSS 0.8%CVE-2024-57482CRITICALH3C N12 V100R005 contains a buffer overflow vulnerability due to the lack of length verification in the 5G wireless network processing functEPSS 0.8%CVE-2024-57473CRITICALH3C N12 V100R005 contains a buffer overflow vulnerability due to the lack of length verification in the mac address editing function. AttackEPSS 0.8%CVE-2025-14526HIGHTenda CH22 L7Im frmL7ImForm buffer overflowEPSS 0.8%CVE-2024-57471CRITICALH3C N12 V100R005 contains a buffer overflow vulnerability due to the lack of length verification in the 2.4G wireless network processing funEPSS 0.8%CVE-2023-50362MEDIUMQTS, QuTS heroEPSS 0.8%CVE-2026-15314HIGHAuthenticated Denial-of-Service Vulnerability in TP-Link Tapo P110EPSS 0.8%CVE-2023-50361MEDIUMQTS, QuTS heroEPSS 0.8%CVE-2025-6882HIGHD-Link DIR-513 formSetWanPPTP buffer overflowEPSS 0.8%