CWE-787— Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.— MITRE CWE catalog
13,922 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-787page 188 of 279
- CVE-2023-32889HIGHCVSS 7.5EG 7.52024-01-02
In Modem IMS Call UA, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch…
- CVE-2023-32891MEDIUMCVSS 6.7EG 6.72024-01-02
In bluetooth service, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patc…
- CVE-2023-3291LOWCVSS 3.3EG 5.12023-06-16
Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.2.
- CVE-2023-32971LOWCVSS 3.8EG 3.82023-10-06
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to execute code via a network. We have…
- CVE-2023-32972LOWCVSS 3.8EG 3.82023-10-06
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to execute code via a network. We have…
- CVE-2023-32973LOWCVSS 3.8EG 3.82023-10-13
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to execute code via a network. We have…
- CVE-2023-32981HIGHCVSS 8.8EG 8.82023-05-16
An arbitrary file write vulnerability in Jenkins Pipeline Utility Steps Plugin 2.15.2 and earlier allows attackers able to provide crafted archives as parameters to create or replace arbitrary files on the agent file system with attacker-s…
- CVE-2023-33028CRITICALCVSS 9.8EG 9.82023-10-03
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
- CVE-2023-33030CRITICALCVSS 9.3EG 9.32024-01-02
Memory corruption in HLOS while running playready use-case.
- CVE-2023-33031HIGHCVSS 7.8EG 7.82023-11-07
Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer.
- CVE-2023-33032CRITICALCVSS 9.3EG 9.32024-01-02
Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.
- CVE-2023-33033HIGHCVSS 8.4EG 8.42024-01-02
Memory corruption in Audio during playback with speaker protection.
- CVE-2023-33034HIGHCVSS 7.8EG 7.82023-10-03
Memory corruption while parsing the ADSP response command.
- CVE-2023-33038MEDIUMCVSS 6.7EG 6.72024-01-02
Memory corruption while receiving a message in Bus Socket Transport Server.
- CVE-2023-33045CRITICALCVSS 9.8EG 9.82023-11-07
Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.
- CVE-2023-33046HIGHCVSS 7.8EG 7.82024-02-06
Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation.
- CVE-2023-33055HIGHCVSS 7.8EG 7.82023-11-07
Memory Corruption in Audio while invoking callback function in driver from ADSP.
- CVE-2023-33059HIGHCVSS 7.8EG 7.82023-11-07
Memory corruption in Audio while processing the VOC packet data from ADSP.
- CVE-2023-33066HIGHCVSS 8.4EG 8.42024-03-04
Memory corruption in Audio while processing RT proxy port register driver.
- CVE-2023-33067MEDIUMCVSS 6.7EG 6.72024-02-06
Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points.
- CVE-2023-33074HIGHCVSS 8.4EG 8.42023-11-07
Memory corruption in Audio when SSR event is triggered after music playback is stopped.
- CVE-2023-33076MEDIUMCVSS 5.9EG 5.92024-02-06
Memory corruption in Core when updating rollback version for TA and OTA feature is enabled.
- CVE-2023-33113HIGHCVSS 8.4EG 8.42024-01-02
Memory corruption when resource manager sends the host kernel a reply message with multiple fragments.
- CVE-2023-33124HIGHCVSS 7.8EG 7.82023-06-13
A vulnerability has been identified in JT2Go (All versions < V14.2.0.3), Teamcenter Visualization V13.2 (All versions < V13.2.0.13), Teamcenter Visualization V13.3 (All versions < V13.3.0.10), Teamcenter Visualization V14.0 (All versions <…
- CVE-2023-33218CRITICALCVSS 9.1EG 9.12023-12-15
The Parameter Zone Read and Parameter Zone Write command handlers allow performing a Stack buffer overflow. This could potentially lead to a Remote Code execution on the targeted device.
- CVE-2023-33219CRITICALCVSS 9.1EG 9.12023-12-15
The handler of the retrofit validation command doesn't properly check the boundaries when performing certain validation operations. This allows a stack-based buffer overflow that could lead to a potential Remote Code Execution on the…
- CVE-2023-33220CRITICALCVSS 9.1EG 9.12023-12-15
During the retrofit validation process, the firmware doesn't properly check the boundaries while copying some attributes to check. This allows a stack-based buffer overflow that could lead to a potential Remote Code Execution on th…
- CVE-2023-33221MEDIUMCVSS 6.8EG 6.82023-12-15
When reading DesFire keys, the function that reads the card isn't properly checking the boundaries when copying internally the data received. This allows a heap based buffer overflow that could lead to a potential Remote Code Ex…
- CVE-2023-33222MEDIUMCVSS 6.8EG 6.82023-12-15
When handling contactless cards, usage of a specific function to get additional information from the card which doesn't check the boundary on the data received while reading. This allows a stack-based buffer overflow that could l…
- CVE-2023-33308CRITICALCVSS 9.8EG 9.82023-07-26
A stack-based overflow vulnerability [CWE-124] in Fortinet FortiOS version 7.0.0 through 7.0.10 and 7.2.0 through 7.2.3 and FortiProxy version 7.0.0 through 7.0.9 and 7.2.0 through 7.2.2 allows a remote unauthenticated attacker to execute …
- CVE-2023-33375CRITICALCVSS 9.8EG 9.82023-08-04
Connected IO v2.1.0 and prior has a stack-based buffer overflow vulnerability in its communication protocol, enabling attackers to take control over devices.
- CVE-2023-3341HIGHCVSS 7.5EG 7.52023-09-20
The code that processes control channel messages sent to `named` calls certain functions recursively during packet parsing. Recursion depth is only limited by the maximum accepted packet size; depending on the environment, this may cause t…
- CVE-2023-33476CRITICALCVSS 9.8EG 9.82023-06-02
ReadyMedia (MiniDLNA) versions from 1.1.15 up to 1.3.2 is vulnerable to Buffer Overflow. The vulnerability is caused by incorrect validation logic when handling HTTP requests using chunked transport encoding. This results in other code lat…
- CVE-2023-33485HIGHCVSS 8.8EG 8.82023-05-31
TOTOLINK X5000R V9.1.0u.6118_B20201102 and V9.1.0u.6369_B20230113 contains a post-authentication buffer overflow via parameter sPort/ePort in the addEffect function.
- CVE-2023-33546MEDIUMCVSS 5.5EG 5.52023-06-01
Janino 3.1.9 and earlier are subject to denial of service (DOS) attacks when using the expression evaluator.guess parameter name method. If the parser runs on user-supplied input, an attacker could supply content that causes the parser to …
- CVE-2023-33551HIGHCVSS 7.8EG 7.82023-06-01
Heap Buffer Overflow in the erofsfsck_dirent_iter function in fsck/main.c in erofs-utils v1.6 allows remote attackers to execute arbitrary code via a crafted erofs filesystem image.
- CVE-2023-33552HIGHCVSS 7.8EG 7.82023-06-01
Heap Buffer Overflow in the erofs_read_one_data function at data.c in erofs-utils v1.6 allows remote attackers to execute arbitrary code via a crafted erofs filesystem image.
- CVE-2023-33613MEDIUMCVSS 5.5EG 5.52023-06-06
axTLS v2.1.5 was discovered to contain a heap buffer overflow in the bi_import function in axtls-code/crypto/bigint.c. This vulnerability allows attackers to cause a Denial of Service (DoS) when parsing a private key.
- CVE-2023-33626CRITICALCVSS 9.8EG 9.82023-06-12
D-Link DIR-600 Hardware Version B5, Firmware Version 2.18 was discovered to contain a stack overflow via the gena.cgi binary.
- CVE-2023-33627HIGHCVSS 7.2EG 7.22023-05-31
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the UpdateSnat interface at /goform/aspForm.
- CVE-2023-33628HIGHCVSS 7.2EG 7.22023-05-31
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the DelvsList interface at /goform/aspForm.
- CVE-2023-33629HIGHCVSS 7.2EG 7.22023-05-31
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the DeltriggerList interface at /goform/aspForm.
- CVE-2023-33630HIGHCVSS 7.2EG 7.22023-05-31
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the EditvsList interface at /goform/aspForm.
- CVE-2023-33631HIGHCVSS 7.2EG 7.22023-05-31
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the DelSTList interface at /goform/aspForm.
- CVE-2023-33632HIGHCVSS 7.2EG 7.22023-05-31
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the ipqos_lanip_dellist interface at /goform/aspForm.
- CVE-2023-33633HIGHCVSS 7.2EG 7.22023-05-31
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the UpdateWanParams interface at /goform/aspForm.
- CVE-2023-33634HIGHCVSS 7.2EG 7.22023-05-31
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the EdittriggerList interface at /goform/aspForm.
- CVE-2023-33635HIGHCVSS 7.2EG 7.22023-05-31
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the UpdateMacClone interface at /goform/aspForm.
- CVE-2023-33636HIGHCVSS 7.2EG 7.22023-05-31
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the ipqos_lanip_editlist interface at /goform/aspForm.
- CVE-2023-33637HIGHCVSS 7.2EG 7.22023-05-31
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the DelDNSHnList interface at /goform/aspForm.
Map vulnerabilities like CWE-787 to your infrastructure
EchelonGraph correlates every CVE — across CWE-787 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →