CWE-123— Write-what-where Condition
Any condition where the attacker has the ability to write an arbitrary value to an arbitrary location, often as the result of a buffer overflow.— MITRE CWE catalog
64 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-123page 2 of 2
- CVE-2026-25262MEDIUMCVSS 6.3EG 6.92026-09-22
Memory corruption while processing a crafted ELF file in the Primary Bootloader.
- CVE-2024-20141MEDIUMCVSS 6.6EG 6.82025-02-03
In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User inter…
- CVE-2024-20119MEDIUMCVSS 6.7EG 6.72024-11-04
In mms, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS0906…
- CVE-2024-20118MEDIUMCVSS 6.7EG 6.72024-11-04
In mms, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS0906…
- CVE-2021-1520MEDIUMCVSS 6.7EG 6.72021-05-06
A vulnerability in the internal message processing of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, local attacker to run arbitrary commands with root privileges on the underlying operati…
- CVE-2018-15376MEDIUMCVSS 6.7EG 6.72018-10-05
A vulnerability in the embedded test subsystem of Cisco IOS Software for Cisco 800 Series Industrial Integrated Services Routers could allow an authenticated, local attacker to write arbitrary values to arbitrary locations in the memory sp…
- CVE-2018-15375MEDIUMCVSS 6.7EG 6.72018-10-05
A vulnerability in the embedded test subsystem of Cisco IOS Software for Cisco 800 Series Industrial Integrated Services Routers could allow an authenticated, local attacker to write arbitrary values to arbitrary locations in the memory sp…
- CVE-2025-7403MEDIUMCVSS 6.5EG 6.52025-09-19
Unsafe handling in bt_conn_tx_processor causes a use-after-free, resulting in a write-before-zero. The written 4 bytes are attacker-controlled, enabling precise memory corruption.
- CVE-2026-20469MEDIUMCVSS 6.0EG 6.02026-08-03
In trusted_mem, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is needed for e…
- CVE-2024-47438MEDIUMCVSS 5.5EG 5.52024-11-12
Substance3D - Painter versions 10.1.0 and earlier are affected by a Write-what-where Condition vulnerability that could lead to a memory leak. This vulnerability allows an attacker to write a controlled value at a controlled memory locatio…
- CVE-2025-14857MEDIUMCVSS 5.4EG 5.42026-04-07
An improper access control vulnerability exists in Semtech LoRa LR11xxx transceivers running early versions of firmware where the memory write command accessible via the physical SPI interface fails to enforce write protection on the progr…
- CVE-2021-1390MEDIUMCVSS 5.1EG 5.12021-03-24
A vulnerability in one of the diagnostic test CLI commands of Cisco IOS XE Software could allow an authenticated, local attacker to execute arbitrary code on an affected device. To exploit this vulnerability, the attacker would need to hav…
- CVE-2025-29943MEDIUMCVSS 4.6EG 4.62026-01-16
Write what were condition within AMD CPUs may allow an admin-privileged attacker to modify the configuration of the CPU pipeline potentially resulting in the corruption of the stack pointer inside an SEV-SNP guest.
- CVE-2021-36057MEDIUMCVSS 3.3EG 4.02021-09-01
XMP Toolkit SDK version 2020.1 (and earlier) is affected by a write-what-where condition vulnerability caused during the application's memory allocation process. This may cause the memory management functions to become mismatched resulting…
Map vulnerabilities like CWE-123 to your infrastructure
EchelonGraph correlates every CVE — across CWE-123 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →