Vulnerability index

Browse CVEs

4,225 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
Ac1206 Firmware HIGH 8.8
CVE-2025-3328EPSS 7%

A vulnerability was found in Tenda AC1206 15.03.06.23. It has been classified as critical. Affected is the function form_fast_setting_wifi_set of the…

No fix yet
Fix from $1,950 2025-04-07
Unclassified MEDIUM 5.5
CVE-2025-29476

Buffer Overflow vulnerability in compress_chunk_fuzzer with oss-fuzz on commit 16450518afddcb3139de627157208e49bfef6987 in c-blosc2 v.2.17.0 and befo…

No fix yet
Fix from $1,600 2025-04-04
Unclassified HIGH 7.5
CVE-2025-3194

Versions of the package bigint-buffer from 0.0.0 are vulnerable to Buffer Overflow in the toBigIntLE() function. Attackers can exploit this to crash …

Mitigation only
Fix from $1,950 2025-04-04
Ac15 Firmware CRITICAL 9.8
CVE-2025-29462

A buffer overflow vulnerability has been discovered in Tenda Ac15 V15.13.07.13. The vulnerability occurs when the webCgiGetUploadFile function calls …

No fix yet
Fix from $2,300 2025-04-03
Product Management System HIGH 7.8
CVE-2025-3148

A vulnerability was found in codeprojects Product Management System 1.0 and classified as problematic. This issue affects some unknown processing of …

Mitigation only
Fix from $1,950 2025-04-03
Bus Reservation System HIGH 7.8
CVE-2025-3139

A vulnerability was found in code-projects Bus Reservation System 1.0 and classified as critical. Affected by this issue is the function Login of the…

Mitigation only
Fix from $1,950 2025-04-03
Di 8100 Firmware HIGH 7.1
CVE-2025-28398

D-LINK DI-8100 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_net_asp function via the remot_ip parameter.

No fix yet
Fix from $1,950 2025-04-01
Di 8100 Firmware HIGH 7.1
CVE-2025-28395

D-LINK DI-8100 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_road_asp function via the host_ip parameter.

No fix yet
Fix from $1,950 2025-04-01
Navisworks HIGH 7.8
CVE-2025-1660

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A malicious actor can leverage…

Fix: 2025.5+
Fix from $1,950 2025-04-01
macOS CRITICAL 9.8
CVE-2025-24266

A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. …

Fix: 13.7.5 / 14.7.5+
Fix from $2,300 2025-03-31
Ipados CRITICAL 9.8
CVE-2025-24237

A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, ma…

Fix: 2.4 / 13.7.5+
Fix from $2,300 2025-03-31
Safari HIGH 7.0
CVE-2025-24209

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, mac…

Fix: 15.4 / 17.7.6+
Fix from $1,950 2025-03-31
macOS MEDIUM 5.6
CVE-2025-24157

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13…

Fix: 13.7.5 / 14.7.5+
Fix from $1,600 2025-03-31
Unclassified MEDIUM 5.9
CVE-2024-24456

An E-RAB Release Command packet containing a malformed NAS PDU will cause the Athonet MME to immediately crash, potentially due to a buffer overflow.

Mitigation only
Fix from $1,600 2025-03-31
Fortimail HIGH 8.8
CVE-2023-33302

A buffer copy without checking size of input ('classic buffer overflow') in Fortinet FortiMail webmail and administrative interface version 6.4.0 th…

Fix: 6.0.11 / 6.2.7+
Fix from $1,950 2025-03-31
W6 S Firmware HIGH 7.5
CVE-2025-28220

Tenda W6_S v1.0.0.4_510 has a Buffer Overflow vulnerability in the setcfm function, which allows remote attackers to cause web server crash via param…

Mitigation only
Fix from $1,950 2025-03-28
W6 S Firmware HIGH 7.5
CVE-2025-28221

Tenda W6_S v1.0.0.4_510 has a Buffer Overflow vulnerability in the set_local_time function, which allows remote attackers to cause web server crash v…

Mitigation only
Fix from $1,950 2025-03-28
Linux Kernel HIGH 7.8
CVE-2022-49754

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix a buffer overflow in mgmt_mesh_add() Smatch Warning: net/bluetoo…

Fix: 6.1.9+
Fix from $1,950 2025-03-27
Tlr 2005ksh Firmware CRITICAL 9.8
CVE-2025-26011

Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability when requesting the admin.cgi parameter with setUsernamePassword.

Mitigation only
Fix from $2,300 2025-03-26
Tlr 2005ksh Firmware HIGH 7.5
CVE-2025-28361

Unauthorized stack overflow vulnerability in Telesquare TLR-2005KSH v.1.1.4 allows a remote attacker to obtain sensitive information via the systemut…

Mitigation only
Fix from $1,950 2025-03-26
Tlr 2005ksh Firmware CRITICAL 9.8
CVE-2025-26005

Telesquare TLR-2005KSH 1.1.4 is vulnerable to unauthorized stack overflow vulnerability when requesting admin.cgi parameter with setNtp.

Mitigation only
Fix from $2,300 2025-03-26
Tlr 2005ksh Firmware CRITICAL 9.8
CVE-2025-26006

Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability when requesting the admin.cgi parameter with setAutorest.

Mitigation only
Fix from $2,300 2025-03-26
Tlr 2005ksh Firmware CRITICAL 9.8
CVE-2025-26007

Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability in the login interface when requesting systemtil.cgi.

Mitigation only
Fix from $2,300 2025-03-26
Tlr 2005ksh Firmware CRITICAL 9.8
CVE-2025-26008

In Telesquare TLR-2005KSH 1.1.4, an unauthorized stack overflow vulnerability exists when requesting admin.cgi parameter with setSyncTimeHost.

Mitigation only
Fix from $2,300 2025-03-26
Tlr 2005ksh Firmware CRITICAL 9.8
CVE-2025-26002

Telesquare TLR-2005KSH 1.1.4 is affected by an unauthorized stack overflow vulnerability when requesting the admin.cgi parameter with setSyncTimeHost.

Mitigation only
Fix from $2,300 2025-03-26
Tlr 2005ksh Firmware CRITICAL 9.8
CVE-2025-26004

Telesquare TLR-2005KSH 1.1.4 is vulnerable to unauthorized stack buffer overflow vulnerability when requesting admin.cgi parameter with setDdns.

Mitigation only
Fix from $2,300 2025-03-26
Ghostscript HIGH 7.8
CVE-2025-27835

An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs when converting glyphs to Unicode in psi/zbfont.c.

Fix: 10.05.0+
Fix from $1,950 2025-03-25
Ghostscript CRITICAL 9.8
CVE-2025-27836

An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/japanese/gdev10v.c.

Fix: 10.05.0+
Fix from $2,300 2025-03-25
Ghostscript HIGH 7.8
CVE-2025-27830

An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs during serialization of DollarBlend in a font, for base/write…

Fix: 10.05.0+
Fix from $1,950 2025-03-25
Ghostscript CRITICAL 9.8
CVE-2025-27831

An issue was discovered in Artifex Ghostscript before 10.05.0. The DOCXWRITE TXTWRITE device has a text buffer overflow via long characters to device…

Fix: 10.05.0+
Fix from $2,300 2025-03-25