Vulnerability index

Browse CVEs

4,225 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
Tl Wr886n Firmware CRITICAL 9.8
CVE-2021-44626

A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/get_reg_verify_code feature, which allows m…

No fix yet
Fix from $2,300 2022-03-10
Tl Wr886n Firmware CRITICAL 9.8
CVE-2021-44623

A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 via the /cloud_config/router_post/check_reset_pwd_verify_code interface.

No fix yet
Fix from $2,300 2022-03-10
Tl Wr886n Firmware CRITICAL 9.8
CVE-2021-44625

A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in /cloud_config/cloud_device/info interface, which allows a malicious user …

No fix yet
Fix from $2,300 2022-03-10
Tl Wr886n Firmware CRITICAL 9.8
CVE-2021-44622

A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/check_reg_verify_code function which could …

No fix yet
Fix from $2,300 2022-03-10
Emui HIGH 7.5
CVE-2021-40062

There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitation of this vulnerability may …

Mitigation only
Fix from $1,950 2022-03-10
Emui HIGH 7.5
CVE-2021-40056

There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitation of this vulnerability may …

Mitigation only
Fix from $1,950 2022-03-10
Smt Series 1015 Ups Firmware CRITICAL 9.8
CVE-2022-22805EPSS 12%

A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists that could cause remote code execution when an…

Fix: after 04.5
Fix from $2,300 2022-03-09
Linux Kernel HIGH 7.8
CVE-2022-26490

st21nfca_connectivity_event_received in drivers/nfc/st21nfca/se.c in the Linux kernel through 5.16.12 has EVT_TRANSACTION buffer overflows because of…

Fix: after 5.16.12
Fix from $1,950 2022-03-06
Debian Linux HIGH 7.5
CVE-2022-21716

Twisted is an event-based framework for internet applications, supporting Python 3.6+. Prior to 22.2.0, Twisted SSH client and server implement is ab…

Fix: 22.2.0+
Fix from $1,950 2022-03-03
Ok File Formats HIGH 7.8
CVE-2021-44343

David Brackeen ok-file-formats 203defd is vulnerable to Buffer Overflow. When the function of the ok-file-formats project is used, a heap-buffer-over…

No fix yet
Fix from $1,950 2022-03-03
Trusted Firmware M HIGH 7.8
CVE-2021-43619

Trusted Firmware M 1.4.x through 1.4.1 has a buffer overflow issue in the Firmware Update partition. In the IPC model, a psa_fwu_write caller from SP…

Patch available
Fix from $1,950 2022-03-01
Routeros HIGH 7.5
CVE-2020-22845

A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of service (DOS) via crafted FTP requests.

Mitigation only
Fix from $1,950 2022-02-28
Emui CRITICAL 9.1
CVE-2021-22394

There is a buffer overflow vulnerability in smartphones. Successful exploitation of this vulnerability may cause DoS of the apps during Multi-Screen …

No fix yet
Fix from $2,300 2022-02-25
Ilo Amplifier Pack HIGH 7.2
CVE-2021-29220

Multiple buffer overflow security vulnerabilities have been identified in HPE iLO Amplifier Pack version(s): Prior to 2.12. These vulnerabilities cou…

Fix: 2.12+
Fix from $1,950 2022-02-24
Sterling External Authentication Server MEDIUM 6.5
CVE-2022-22333

IBM Sterling Secure Proxy 6.0.3.0, 6.0.2.0, and 3.4.3.2 and IBM Sterling External Authentication Server are vulnerable a buffer overflow, due to the …

Patch available
Fix from $1,600 2022-02-23
Debian Linux CRITICAL 9.8
CVE-2021-43303

Buffer overflow in PJSUA API when calling pjsua_call_dump. An attacker-controlled 'buffer' argument may cause a buffer overflow, since supplying an o…

Fix: after 2.11.1
Fix from $2,300 2022-02-16
Photoshop HIGH 7.8
CVE-2022-23203

Adobe Photoshop versions 22.5.4 (and earlier) and 23.1 (and earlier) are affected by a buffer overflow vulnerability due to insecure handling of a cr…

Fix: after 23.1
Fix from $1,950 2022-02-16
Illustrator HIGH 7.8
CVE-2022-23188

Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by a buffer overflow vulnerability due to insecure handling of …

Fix: after 26.0.2
Fix from $1,950 2022-02-16
Accel Ppp CRITICAL 9.8
CVE-2022-24704

The rad_packet_recv function in opt/src/accel-pppd/radius/packet.c suffers from a buffer overflow vulnerability, whereby user input len is copied int…

Fix: after 1.12.0
Fix from $2,300 2022-02-14
Accel Ppp CRITICAL 9.8
CVE-2022-24705

The rad_packet_recv function in radius/packet.c suffers from a memcpy buffer overflow, resulting in an overly-large recvfrom into a fixed buffer that…

Fix: 1.12.0+
Fix from $2,300 2022-02-14
Android HIGH 7.8
CVE-2022-23428

An improper boundary check in eden_runtime hal service prior to SMR Feb-2022 Release 1 allows arbitrary memory write and code execution.

Mitigation only
Fix from $1,950 2022-02-11
Android MEDIUM 6.7
CVE-2022-23431

An improper boundary check in RPMB ldfw prior to SMR Feb-2022 Release 1 allows arbitrary memory write and code execution.

Mitigation only
Fix from $1,600 2022-02-11
Interactive Graphical Scada System Data Collector CRITICAL 9.8
CVE-2021-22802EPSS 20%

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could result in remote code execution due to missing length check on …

Fix: after 15.0.0.21243
Fix from $2,300 2022-02-11
Interactive Graphical Scada System Data Collector HIGH 7.5
CVE-2021-22824EPSS 14%

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could result in denial of service, due to missing length check on use…

Fix: after 15.0.0.21320
Fix from $1,950 2022-02-11
Apq8009w Firmware HIGH 7.8
CVE-2021-30318

Improper validation of input when provisioning the HDCP key can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connecti…

Mitigation only
Fix from $1,950 2022-02-11
Apq8009w Firmware HIGH 7.8
CVE-2021-30323

Improper validation of maximum size of data write to EFS file can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Consum…

Mitigation only
Fix from $1,950 2022-02-11
Apq8096au Firmware MEDIUM 6.7
CVE-2021-30324

Possible out of bound write due to lack of boundary check for the maximum size of buffer when sending a DCI packet to remote process in Snapdragon Au…

Patch available
Fix from $1,600 2022-02-11
Mdm9650 Firmware HIGH 7.8
CVE-2021-30309

Improper size validation of QXDM commands can lead to memory corruption in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Sn…

Mitigation only
Fix from $1,950 2022-02-11
Interactive Graphical Scada System Data Server CRITICAL 9.8
CVE-2022-24313EPSS 45%

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflow potentially leading to remo…

Fix: after 15.0.0.22020
Fix from $2,300 2022-02-09
Atom C3308 MEDIUM 6.7
CVE-2021-0115

Buffer overflow in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local acce…

Mitigation only
Fix from $1,600 2022-02-09