Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
MEDIUM 5.5 CVE-2023-46332 WebAssembly wabt 1.0.33 contains an Out-of-Bound Memory Write in DataSegment::Drop(), which lead to segmentation fault. Webassembly Binary Toolkit No fix yet Fix from $1,6002023-10-23 HIGH 7.8 CVE-2023-28793 Buffer overflow vulnerability in the signelf library used by Zscaler Client Connector on Linux allows Code Injection. This issue affects Zscaler Clie… Client Connector 1.3.1.6+ Fix from $1,9502023-10-23 HIGH 7.8 CVE-2023-45675 stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of bounds write in `f->vendor[len] =… Stb Vorbis.c Mitigation only Fix from $1,9502023-10-21 HIGH 7.8 CVE-2023-45676 stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of bounds write in `f->vendor[i] = g… Stb Vorbis.c Mitigation only Fix from $1,9502023-10-21 HIGH 7.8 CVE-2023-45677 stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of bounds write in `f->vendor[len] =… Stb Vorbis.c Mitigation only Fix from $1,9502023-10-21 HIGH 7.8 CVE-2023-45678 stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of buffer write in `start_decoder` b… Stb Vorbis.c Mitigation only Fix from $1,9502023-10-21 HIGH 7.8 CVE-2023-45681 stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger memory write past an allocated heap buff… Stb Vorbis.c Mitigation only Fix from $1,9502023-10-21 HIGH 8.8 CVE-2023-5686 Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.9.0. Fedora 5.9.0+ Fix from $1,9502023-10-20 HIGH 7.8 CVE-2023-3487 An integer overflow in Silicon Labs Gecko Bootloader version 4.3.1 and earlier allows unbounded memory access when reading from or writing to storage… Gecko Bootloader after 4.3.1 Fix from $1,9502023-10-20 CRITICAL 9.8 CVE-2023-38584 In Weintek's cMT3000 HMI Web CGI device, the cgi-bin command_wb.cgi contains a stack-based buffer overflow, which could allow an anonymous attacker t… Cmt Fhd Firmware 20210206 / 20210212+ Fix from $2,3002023-10-19 CRITICAL 9.8 CVE-2023-43492 In Weintek's cMT3000 HMI Web CGI device, the cgi-bin codesys.cgi contains a stack-based buffer overflow, which could allow an anonymous attacker to h… Cmt Fhd Firmware 20210206 / 20210212+ Fix from $2,3002023-10-19 HIGH 7.8 CVE-2023-35986 Sante DICOM Viewer Pro lacks proper validation of user-supplied data when parsing DICOM files. This could lead to a stack-based buffer overflow. An a… Dicom Viewer Pro 12.2.6+ Fix from $1,9502023-10-19 HIGH 7.8 CVE-2023-38128 An out-of-bounds write vulnerability exists in the "HyperLinkFrame" stream parser of Ichitaro 2023 1.0.1.59372. A specially crafted document can caus… Easy Postcard Max No fix yet Fix from $1,9502023-10-19 HIGH 7.8 CVE-2023-39431 Sante DICOM Viewer Pro lacks proper validation of user-supplied data when parsing DICOM files. This could lead to an out-of-bounds write. An attacker… Dicom Viewer Pro 12.2.6+ Fix from $1,9502023-10-19 HIGH 7.8 CVE-2023-35126 An out-of-bounds write vulnerability exists within the parsers for both the "DocumentViewStyles" and "DocumentEditStyles" streams of Ichitaro 2023 1.… Easy Postcard Max No fix yet Fix from $1,9502023-10-19 HIGH 7.8 CVE-2023-43252 XNSoft Nconvert 7.136 is vulnerable to Buffer Overflow via a crafted image file. Nconvert No fix yet Fix from $1,9502023-10-19 HIGH 8.8 CVE-2022-25334 The Texas Instruments OMAP L138 (secure variants) trusted execution environment (TEE) lacks a bounds check on the signature size field in the SK_LOAD… Omap L138 Firmware Mitigation only Fix from $1,9502023-10-19 CRITICAL 9.8 CVE-2023-4601 A stack-based buffer overflow vulnerability exists in NI System Configuration that could result in information disclosure and/or arbitrary code execu… System Configuration 2023+ Fix from $2,3002023-10-18 CRITICAL 9.8 CVE-2023-38545EPSS 78% This flaw makes curl overflow a heap based buffer in the SOCKS5 proxy handshake. When curl is asked to pass along the host name to the SOCKS5 proxy … Fedora 8.4.0 / 10.0.17763.5122+ Fix from $2,3002023-10-18 MEDIUM 6.5 CVE-2023-41711 SonicOS post-authentication Stack-Based Buffer Overflow Vulnerability in the sonicwall.exp, prefs.exp URL endpoints lead to a firewall crash. Sonicos 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+ Fix from $1,6002023-10-17 MEDIUM 6.5 CVE-2023-41712 SonicOS post-authentication Stack-Based Buffer Overflow Vulnerability in the SSL VPN plainprefs.exp URL endpoint leads to a firewall crash. Sonicos 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+ Fix from $1,6002023-10-17 HIGH 7.8 CVE-2023-42507 Stack-based buffer overflow vulnerability exists in OnSinView2 versions 2.0.1 and earlier. If this vulnerability is exploited, information may be dis… Onsinview2 after 2.0.1 Fix from $1,9502023-10-17 MEDIUM 6.5 CVE-2023-39276 SonicOS post-authentication stack-based buffer overflow vulnerability in the getBookmarkList.json URL endpoint leads to a firewall crash. Sonicos 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+ Fix from $1,6002023-10-17 MEDIUM 6.5 CVE-2023-39277 SonicOS post-authentication stack-based buffer overflow vulnerability in the sonicflow.csv and appflowsessions.csv URL endpoints leads to a firewall … Sonicos 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+ Fix from $1,6002023-10-17 MEDIUM 6.5 CVE-2023-39278 SonicOS post-authentication user assertion failure leads to Stack-Based Buffer Overflow vulnerability via main.cgi leads to a firewall crash. Sonicos 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+ Fix from $1,6002023-10-17 MEDIUM 6.5 CVE-2023-39279 SonicOS post-authentication Stack-Based Buffer Overflow vulnerability in the getPacketReplayData.json URL endpoint leads to a firewall crash. Sonicos 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+ Fix from $1,6002023-10-17 MEDIUM 6.5 CVE-2023-39280 SonicOS p ost-authentication Stack-Based Buffer Overflow vulnerability in the ssoStats-s.xml, ssoStats-s.wri URL endpoints leads to a firewall crash. Sonicos 6.5.4.4-44v-21-2340 / 6.5.4.13-105n+ Fix from $1,6002023-10-17 CRITICAL 9.8 CVE-2023-45984 TOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the lang parameter i… X5000r Firmware No fix yet Fix from $2,3002023-10-16 HIGH 7.5 CVE-2023-45985 TOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 were discovered to contain a stack overflow in the function setPare… X5000r Firmware No fix yet Fix from $1,9502023-10-16 CRITICAL 9.8 CVE-2023-45579 Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.2… Di 7003g Firmware after 23.08.25d1 Fix from $2,3002023-10-16