Vulnerability index

Browse CVEs

4,225 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
Ssl Vpn Client MEDIUM 5.5
CVE-2023-5748

Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in cgi component in Synology SSL VPN Client before 1.4.7-0687 al…

Fix: 1.4.7-0687+
Fix from $1,600 2023-11-07
Redisgraph HIGH 8.8
CVE-2023-47004

Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fixed in v.2.12.9 allows an attacker to execute arbitrary code via the c…

Fix: 2.12.9+
Fix from $1,950 2023-11-06
Enterprise Linux HIGH 7.5
CVE-2023-46847EPSS 88%

Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to he…

Mitigation only
Fix from $1,950 2023-11-03
Openimageio CRITICAL 9.8
CVE-2023-42299

Buffer Overflow vulnerability in OpenImageIO oiio v.2.4.12.0 allows a remote attacker to execute arbitrary code and cause a denial of service via the…

Patch available
Fix from $2,300 2023-11-02
Enterprise Linux MEDIUM 5.5
CVE-2023-3164

A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. This flaw all…

Fix: 4.6.0+
Fix from $1,600 2023-11-02
Edr G903 Firmware HIGH 7.5
CVE-2023-4452

A vulnerability has been identified in the EDR-810, EDR-G902, and EDR-G903 Series, making them vulnerable to the denial-of-service vulnerability. Th…

Fix: 5.7.21 / 5.12.29+
Fix from $1,950 2023-11-01
Px4 Drone Autopilot CRITICAL 9.8
CVE-2023-46256

PX4-Autopilot provides PX4 flight control solution for drones. In versions 1.14.0-rc1 and prior, PX4-Autopilot has a heap buffer overflow vulnerabili…

Fix: after 1.13.3
Fix from $2,300 2023-10-31
Magicline 4.0 CRITICAL 9.8
CVE-2023-45797

A Buffer overflow vulnerability in DreamSecurity MagicLine4NX versions 1.0.0.1 to 1.0.0.26 allows an attacker to remotely execute code.

Fix: after 1.0.0.26
Fix from $2,300 2023-10-30
Xnview HIGH 7.8
CVE-2023-46587

Buffer Overflow vulnerability in XnView Classic v.2.51.5 allows a local attacker to execute arbitrary code via a crafted TIF file.

Mitigation only
Fix from $1,950 2023-10-27
Memcached HIGH 7.5
CVE-2023-46852

In Memcached before 1.6.22, a buffer overflow exists when processing multiget requests in proxy mode, if there are many spaces after the "get" substr…

Fix: 1.6.22+
Fix from $1,950 2023-10-27
Gm265dn Firmware HIGH 8.8
CVE-2022-34886

A remote code execution vulnerability was found in the firmware used in some Lenovo printers, which can be caused by a remote user pushing an illegal…

Fix: 02.06.00.04.00+
Fix from $1,950 2023-10-27
Tvip 10000 Firmware CRITICAL 9.8
CVE-2018-17878

Buffer Overflow vulnerability in certain ABUS TVIP cameras allows attackers to gain control of the program via crafted string sent to sprintf() funct…

No fix yet
Fix from $2,300 2023-10-26
Zephyr HIGH 7.8
CVE-2023-5139

Potential buffer overflow vulnerability at the following location in the Zephyr STM32 Crypto driver

Fix: after 3.4.0
Fix from $1,950 2023-10-26
Zephyr HIGH 8.8
CVE-2023-5753

Potential buffer overflows in the Bluetooth subsystem due to asserts being disabled in /subsys/bluetooth/host/hci_core.c

Fix: after 3.4.0
Fix from $1,950 2023-10-25
Nconvert HIGH 7.8
CVE-2023-43250

XNSoft Nconvert 7.136 is vulnerable to Buffer Overflow. There is a User Mode Write AV via a crafted image file. Attackers could exploit this issue fo…

No fix yet
Fix from $1,950 2023-10-18
Dlt Daemon HIGH 7.5
CVE-2023-36321

Connected Vehicle Systems Alliance (COVESA) up to v2.18.8 was discovered to contain a buffer overflow via the component /shared/dlt_common.c.

Fix: after 2.18.8
Fix from $1,950 2023-10-17
Zephyr CRITICAL 9.8
CVE-2023-4257

Unchecked user input length in /subsys/net/l2/wifi/wifi_shell.c can cause buffer overflows.

Fix: after 3.4.0
Fix from $2,300 2023-10-13
Zephyr HIGH 8.8
CVE-2023-4263

Potential buffer overflow vulnerability in the Zephyr IEEE 802.15.4 nRF 15.4 driver

Fix: after 3.4.0
Fix from $1,950 2023-10-13
Qts HIGH 7.2
CVE-2023-32973

A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vuln…

Fix: 4.5.4.2467 / 5.0.1.2425+
Fix from $1,950 2023-10-13
N3m Firmware HIGH 7.5
CVE-2023-45464

Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the servDomain parameter. This vulnerability allows attackers to cause a Denia…

No fix yet
Fix from $1,950 2023-10-13
N3m Firmware HIGH 7.5
CVE-2023-45468

Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the pingWdogIp. This vulnerability allows attackers to cause a Denial of Servi…

No fix yet
Fix from $1,950 2023-10-13
N3m Firmware HIGH 7.5
CVE-2023-45463

Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the hostName parameter in the FUN_0040dabc function. This vulnerability allows…

No fix yet
Fix from $1,950 2023-10-13
Zabbix HIGH 7.8
CVE-2023-32722

The zabbix/src/libs/zbxjson module is vulnerable to a buffer overflow when parsing JSON files via zbx_json_open.

Fix: after 6.4.5
Fix from $1,950 2023-10-12
Yf325 Firmware CRITICAL 9.8
CVE-2023-35055

A buffer overflow vulnerability exists in the httpd next_page functionality of Yifan YF325 v1.0_20221108. A specially crafted network request can lea…

Mitigation only
Fix from $2,300 2023-10-11
Yf325 Firmware CRITICAL 9.8
CVE-2023-35056

A buffer overflow vulnerability exists in the httpd next_page functionality of Yifan YF325 v1.0_20221108. A specially crafted network request can lea…

Mitigation only
Fix from $2,300 2023-10-11
Xiaomi Router Ax3200 Firmware HIGH 7.2
CVE-2023-26319

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Xiaomi Xiaomi Router allows Command Injection.

Fix: 2023.2+
Fix from $1,950 2023-10-11
Xiaomi Router Ax3200 Firmware HIGH 8.1
CVE-2023-26320

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Xiaomi Xiaomi Router allows Command Injection.

Fix: 2023.2+
Fix from $1,950 2023-10-11
Xiaomi Router Ax3200 Firmware HIGH 7.2
CVE-2023-26318

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Xiaomi Xiaomi Router allows Overflow Buffers.

Fix: 2023.2+
Fix from $1,950 2023-10-11
Reflect HIGH 7.8
CVE-2023-43896

A buffer overflow in Macrium Reflect 8.1.7544 and below allows attackers to escalate privileges or execute arbitrary code.

No fix yet
Fix from $1,950 2023-10-10
Fedora HIGH 7.5
CVE-2023-43615

Mbed TLS 2.x before 2.28.5 and 3.x before 3.5.0 has a Buffer Overflow.

Fix: 2.28.5 / 3.5.0+
Fix from $1,950 2023-10-07