Vulnerability index

Browse CVEs

3,570 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Stack-based Buffer OverflowCWE-121 × clear
Siteomat CRITICAL 9.1
CVE-2017-14854EPSS 7%

A stack buffer overflow exists in one of the Orpak SiteOmat CGI components, allowing for remote code execution. The vulnerability affects all version…

Fix: 6.4.414.122+
Fix from $2,300 2019-06-03
Ovation Ocr400 Firmware HIGH 8.8
CVE-2019-10967

In Emerson Ovation OCR400 Controller 3.3.1 and earlier, a stack-based buffer overflow vulnerability in the embedded third-party FTP server involves i…

Fix: after 3.3.1
Fix from $1,950 2019-05-28
Optodatalink CRITICAL 9.8
CVE-2015-1006EPSS 5%

A vulnerable file in Opto 22 PAC Project Professional versions prior to R9.4006, PAC Project Basic versions prior to R9.4006, PAC Display Basic versi…

Mitigation only
Fix from $2,300 2019-05-10
Compactlogix 5370 L1 Firmware HIGH 7.5
CVE-2019-10954EPSS 6%

An attacker could send crafted SMTP packets to cause a denial-of-service condition where the controller enters a major non-recoverable faulted state …

Fix: after 30.014
Fix from $1,950 2019-05-01
Am 100 Firmware CRITICAL 9.8
CVE-2019-3930EPSS 7%

The Crestron AM-100 firmware 1.6.0.2, Crestron AM-101 firmware 2.7.0.1, Barco wePresent WiPG-1000P firmware 2.3.0.10, Barco wePresent WiPG-1600W befo…

Fix: 2.4.1.19+
Fix from $2,300 2019-04-30
Cncsoft Screeneditor HIGH 7.8
CVE-2019-10947

Delta Industrial Automation CNCSoft, CNCSoft ScreenEditor Version 1.00.88 and prior. Multiple stack-based buffer overflow vulnerabilities may be expl…

Fix: after 1.00.88
Fix from $1,950 2019-04-17
Junos CRITICAL 9.8
CVE-2019-0008

A certain sequence of valid BGP or IPv6 BFD packets may trigger a stack based buffer overflow in the Junos OS Packet Forwarding Engine manager (FXPC)…

Fix: 15.1x53-d235 / 17.1r3+
Fix from $2,300 2019-04-10
Webaccess CRITICAL 9.8
CVE-2019-6550EPSS 6%

Advantech WebAccess/SCADA, Versions 8.3.5 and prior. Multiple stack-based buffer overflow vulnerabilities, caused by a lack of proper validation of t…

Fix: after 8.3.5
Fix from $2,300 2019-04-05
Rslinx CRITICAL 9.8
CVE-2019-6553EPSS 50%

A vulnerability was found in Rockwell Automation RSLinx Classic versions 4.10.00 and prior. An input validation issue in a .dll file of RSLinx Classi…

Fix: after 4.10.00
Fix from $2,300 2019-04-04
Experion Process Knowledge System CRITICAL 9.8
CVE-2014-9189EPSS 5%

Multiple stack-based buffer overflow vulnerabilities were found in Honeywell Experion PKS all versions prior to R400.6, all versions prior to R410.6,…

Mitigation only
Fix from $2,300 2019-03-25
Optodatalink HIGH 7.8
CVE-2015-1007

A specially crafted configuration file could be used to cause a stack-based buffer overflow condition in the OPCTest.exe, which may allow remote code…

Mitigation only
Fix from $1,950 2019-03-25
Automation Fv Designer HIGH 7.5
CVE-2016-5800

A malicious attacker can trigger a remote buffer overflow in the Communication Server in Fatek Automation PM Designer V3 Version 2.1.2.2, and Automat…

No fix yet
Fix from $1,950 2019-03-21
Debian Linux HIGH 8.8
CVE-2018-17937

gpsd versions 2.90 to 3.17 and microjson versions 1.0 to 1.3, an open source project, allow a stack-based buffer overflow, which may allow remote att…

Fix: after 3.17
Fix from $1,950 2019-03-13
Ultravnc HIGH 7.5
CVE-2019-8269EPSS 6%

UltraVNC revision 1206 has stack-based Buffer overflow vulnerability in VNC client code inside FileTransfer module, which leads to a denial of servic…

Fix: 1.2.2.3 / 4.8+
Fix from $1,950 2019-03-08
Ultravnc HIGH 7.5
CVE-2019-8276EPSS 6%

UltraVNC revision 1211 has a stack buffer overflow vulnerability in VNC server code inside file transfer request handler, which can result in Denial …

Fix: 1.2.2.3 / 4.8+
Fix from $1,950 2019-03-08
I 240w Q Gpon Ont Firmware HIGH 8.8
CVE-2019-3921EPSS 18%

The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to a stack buffer overflow via crafted HTTP POST request sen…

No fix yet
Fix from $1,950 2019-03-05
I 240w Q Gpon Ont Firmware CRITICAL 9.8
CVE-2019-3922EPSS 5%

The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to a stack buffer overflow via crafted HTTP POST request sen…

No fix yet
Fix from $2,300 2019-03-05
Ultravnc MEDIUM 6.5
CVE-2019-8263

UltraVNC revision 1205 has stack-based buffer overflow vulnerability in VNC client code inside ShowConnInfo routine, which leads to a denial of servi…

Fix: 1.2.2.3 / 4.8+
Fix from $1,600 2019-03-05
Levistudiou HIGH 7.8
CVE-2019-6537

Multiple stack-based buffer overflow vulnerabilities in WECON LeviStudioU version 1.8.56 and prior may be exploited when parsing strings within proje…

Fix: after 1.8.56
Fix from $1,950 2019-02-13
Ubuntu Linux CRITICAL 9.8
CVE-2019-3822EPSS 13%

libcurl versions from 7.36.0 to before 7.64.0 are vulnerable to a stack-based buffer overflow. The function creating an outgoing NTLM type-3 header (…

Fix: 7.64.0+
Fix from $2,300 2019-02-06
Dokany HIGH 7.8
CVE-2018-5410

Dokan, versions between 1.0.0.5000 and 1.2.0.1000, are vulnerable to a stack-based buffer overflow in the dokan1.sys driver. An attacker can create a…

Fix: 1.2.0.1000+
Fix from $1,950 2019-01-07
Quick Pdf Library HIGH 7.8
CVE-2018-20247EPSS 54%

In Foxit Quick PDF Library (all versions prior to 16.12), issue where loading a malformed or malicious PDF containing a recursive page tree structure…

Fix: 16.12+
Fix from $1,950 2018-12-24
Sinumerik 808d V4.7 Firmware HIGH 7.8
CVE-2018-11463

A vulnerability has been identified in SINUMERIK 808D V4.7 (All versions), SINUMERIK 808D V4.8 (All versions), SINUMERIK 828D V4.7 (All versions < V4…

Fix: after 4.8
Fix from $1,950 2018-12-12
Cx One HIGH 7.8
CVE-2018-18993

Two stack-based buffer overflow vulnerabilities have been discovered in CX-One Versions 4.42 and prior (CX-Programmer Versions 9.66 and prior and CX-…

Fix: after 9.66
Fix from $1,950 2018-12-04
Sherlock CRITICAL 9.8
CVE-2018-17930EPSS 7%

A stack-based buffer overflow vulnerability has been identified in Teledyne DALSA Sherlock Version 7.2.7.4 and prior, which may allow remote code exe…

Fix: after 7.2.7.4
Fix from $2,300 2018-11-28
Arduino Mqtt Client HIGH 8.8
CVE-2018-17614EPSS 10%

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Losant Arduino MQTT Client prior to V2.7. User in…

Fix: 2.7+
Fix from $1,950 2018-11-13
Indusoft Web Studio CRITICAL 9.8
CVE-2018-17916

InduSoft Web Studio versions prior to 8.1 SP2, and InTouch Edge HMI (formerly InTouch Machine Edition) versions prior to 2017 SP2. A remote attacker …

No fix yet
Fix from $2,300 2018-11-02
Webaccess HIGH 7.8
CVE-2018-17910EPSS 5%

WebAccess Versions 8.3.2 and prior. The application fails to properly validate the length of user-supplied data, causing a buffer overflow condition …

Fix: after 8.3.2
Fix from $1,950 2018-10-29
Webaccess CRITICAL 9.8
CVE-2018-14816

Advantech WebAccess 8.3.1 and earlier has several stack-based buffer overflow vulnerabilities that have been identified, which may allow an attacker …

Fix: after 8.3.1
Fix from $2,300 2018-10-23
Pac Control CRITICAL 9.8
CVE-2018-14807

A stack-based buffer overflow vulnerability in Opto 22 PAC Control Basic and PAC Control Professional versions R10.0a and prior may allow remote code…

Mitigation only
Fix from $2,300 2018-10-18