Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Webassembly Binary Toolkit MEDIUM 5.5
CVE-2023-46332

WebAssembly wabt 1.0.33 contains an Out-of-Bound Memory Write in DataSegment::Drop(), which lead to segmentation fault.

No fix yet
Fix from $1,600 2023-10-23
Client Connector HIGH 7.8
CVE-2023-28793

Buffer overflow vulnerability in the signelf library used by Zscaler Client Connector on Linux allows Code Injection. This issue affects Zscaler Clie…

Fix: 1.3.1.6+
Fix from $1,950 2023-10-23
Stb Vorbis.c HIGH 7.8
CVE-2023-45675

stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of bounds write in `f->vendor[len] =…

Mitigation only
Fix from $1,950 2023-10-21
Stb Vorbis.c HIGH 7.8
CVE-2023-45676

stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of bounds write in `f->vendor[i] = g…

Mitigation only
Fix from $1,950 2023-10-21
Stb Vorbis.c HIGH 7.8
CVE-2023-45677

stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of bounds write in `f->vendor[len] =…

Mitigation only
Fix from $1,950 2023-10-21
Stb Vorbis.c HIGH 7.8
CVE-2023-45678

stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of buffer write in `start_decoder` b…

Mitigation only
Fix from $1,950 2023-10-21
Stb Vorbis.c HIGH 7.8
CVE-2023-45681

stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger memory write past an allocated heap buff…

Mitigation only
Fix from $1,950 2023-10-21
Fedora HIGH 8.8
CVE-2023-5686

Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.9.0.

Fix: 5.9.0+
Fix from $1,950 2023-10-20
Gecko Bootloader HIGH 7.8
CVE-2023-3487

An integer overflow in Silicon Labs Gecko Bootloader version 4.3.1 and earlier allows unbounded memory access when reading from or writing to storage…

Fix: after 4.3.1
Fix from $1,950 2023-10-20
Cmt Fhd Firmware CRITICAL 9.8
CVE-2023-38584

In Weintek's cMT3000 HMI Web CGI device, the cgi-bin command_wb.cgi contains a stack-based buffer overflow, which could allow an anonymous attacker t…

Fix: 20210206 / 20210212+
Fix from $2,300 2023-10-19
Cmt Fhd Firmware CRITICAL 9.8
CVE-2023-43492

In Weintek's cMT3000 HMI Web CGI device, the cgi-bin codesys.cgi contains a stack-based buffer overflow, which could allow an anonymous attacker to h…

Fix: 20210206 / 20210212+
Fix from $2,300 2023-10-19
Dicom Viewer Pro HIGH 7.8
CVE-2023-35986

Sante DICOM Viewer Pro lacks proper validation of user-supplied data when parsing DICOM files. This could lead to a stack-based buffer overflow. An a…

Fix: 12.2.6+
Fix from $1,950 2023-10-19
Easy Postcard Max HIGH 7.8
CVE-2023-38128

An out-of-bounds write vulnerability exists in the "HyperLinkFrame" stream parser of Ichitaro 2023 1.0.1.59372. A specially crafted document can caus…

No fix yet
Fix from $1,950 2023-10-19
Dicom Viewer Pro HIGH 7.8
CVE-2023-39431

Sante DICOM Viewer Pro lacks proper validation of user-supplied data when parsing DICOM files. This could lead to an out-of-bounds write. An attacker…

Fix: 12.2.6+
Fix from $1,950 2023-10-19
Easy Postcard Max HIGH 7.8
CVE-2023-35126

An out-of-bounds write vulnerability exists within the parsers for both the "DocumentViewStyles" and "DocumentEditStyles" streams of Ichitaro 2023 1.…

No fix yet
Fix from $1,950 2023-10-19
Nconvert HIGH 7.8
CVE-2023-43252

XNSoft Nconvert 7.136 is vulnerable to Buffer Overflow via a crafted image file.

No fix yet
Fix from $1,950 2023-10-19
Omap L138 Firmware HIGH 8.8
CVE-2022-25334

The Texas Instruments OMAP L138 (secure variants) trusted execution environment (TEE) lacks a bounds check on the signature size field in the SK_LOAD…

Mitigation only
Fix from $1,950 2023-10-19
System Configuration CRITICAL 9.8
CVE-2023-4601

A stack-based buffer overflow vulnerability exists in NI System Configuration that could result in information disclosure and/or arbitrary code execu…

Fix: 2023+
Fix from $2,300 2023-10-18
Fedora CRITICAL 9.8
CVE-2023-38545EPSS 78%

This flaw makes curl overflow a heap based buffer in the SOCKS5 proxy handshake. When curl is asked to pass along the host name to the SOCKS5 proxy …

Fix: 8.4.0 / 10.0.17763.5122+
Fix from $2,300 2023-10-18
Sonicos MEDIUM 6.5
CVE-2023-41711

SonicOS post-authentication Stack-Based Buffer Overflow Vulnerability in the sonicwall.exp, prefs.exp URL endpoints lead to a firewall crash.

Fix: 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+
Fix from $1,600 2023-10-17
Sonicos MEDIUM 6.5
CVE-2023-41712

SonicOS post-authentication Stack-Based Buffer Overflow Vulnerability in the SSL VPN plainprefs.exp URL endpoint leads to a firewall crash.

Fix: 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+
Fix from $1,600 2023-10-17
Onsinview2 HIGH 7.8
CVE-2023-42507

Stack-based buffer overflow vulnerability exists in OnSinView2 versions 2.0.1 and earlier. If this vulnerability is exploited, information may be dis…

Fix: after 2.0.1
Fix from $1,950 2023-10-17
Sonicos MEDIUM 6.5
CVE-2023-39276

SonicOS post-authentication stack-based buffer overflow vulnerability in the getBookmarkList.json URL endpoint leads to a firewall crash.

Fix: 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+
Fix from $1,600 2023-10-17
Sonicos MEDIUM 6.5
CVE-2023-39277

SonicOS post-authentication stack-based buffer overflow vulnerability in the sonicflow.csv and appflowsessions.csv URL endpoints leads to a firewall …

Fix: 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+
Fix from $1,600 2023-10-17
Sonicos MEDIUM 6.5
CVE-2023-39278

SonicOS post-authentication user assertion failure leads to Stack-Based Buffer Overflow vulnerability via main.cgi leads to a firewall crash.

Fix: 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+
Fix from $1,600 2023-10-17
Sonicos MEDIUM 6.5
CVE-2023-39279

SonicOS post-authentication Stack-Based Buffer Overflow vulnerability in the getPacketReplayData.json URL endpoint leads to a firewall crash.

Fix: 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+
Fix from $1,600 2023-10-17
Sonicos MEDIUM 6.5
CVE-2023-39280

SonicOS p ost-authentication Stack-Based Buffer Overflow vulnerability in the ssoStats-s.xml, ssoStats-s.wri URL endpoints leads to a firewall crash.

Fix: 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+
Fix from $1,600 2023-10-17
X5000r Firmware CRITICAL 9.8
CVE-2023-45984

TOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the lang parameter i…

No fix yet
Fix from $2,300 2023-10-16
X5000r Firmware HIGH 7.5
CVE-2023-45985

TOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 were discovered to contain a stack overflow in the function setPare…

No fix yet
Fix from $1,950 2023-10-16
Di 7003g Firmware CRITICAL 9.8
CVE-2023-45579

Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.2…

Fix: after 23.08.25d1
Fix from $2,300 2023-10-16