Skip to main content

CWE archive

CWE-121 CVEs

Programmatic archive

3,522 CVEs tagged with CWE-121584 Critical, 2,296 High, 571 Medium, 70 Low, 1 Unrated.

CVE-2020-13598

Published May 25, 2021

FS: Buffer Overflow when enabling Long File Names in FAT_FS and calling fs_stat. Zephyr versions >= v1.14.2, >= v2.3.0 contain Stack-based Buffer Overflow (CWE-121). For more info…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-10064

Published May 25, 2021

Improper Input Frame Validation in ieee802154 Processing. Zephyr versions >= v1.14.2, >= v2.2.0 contain Stack-based Buffer Overflow (CWE-121), Heap-based Buffer Overflow (CWE-122)…

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort

CVE-2021-27413

Published May 13, 2021

Omron CX-One Versions 4.60 and prior, including CX-Server Versions 5.0.29.0 and prior, are vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-27398

Published May 12, 2021

A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V16.0.5). The PlantSimCore.dll library lacks proper validation of user-supplied data when parsin…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-27396

Published May 12, 2021

A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V16.0.5). The PlantSimCore.dll library lacks proper validation of user-supplied data when parsin…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-22673

Published May 7, 2021

The affected product is vulnerable to stack-based buffer overflow while processing over-the-air firmware updates from the CDN server, which may allow an attacker to remotely execu…

CVSS 8.0 · High

CVE-2021-21540

Published Apr 30, 2021

Dell EMC iDRAC9 versions prior to 4.40.00.00 contain a stack-based overflow vulnerability. A remote authenticated attacker could potentially exploit this vulnerability to overwrit…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-31420

Published Apr 29, 2021

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.0-48950. An attacker must first obtain the ability to execute…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-27480

Published Apr 27, 2021

Delta Industrial Automation COMMGR Versions 1.12 and prior are vulnerable to a stack-based buffer overflow, which may allow an attacker to execute remote code.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-30496

Published Apr 20, 2021

The Telegram app 7.6.2 for iOS allows remote authenticated users to cause a denial of service (application crash) if the victim pastes an attacker-supplied message (e.g., in the P…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-27248

Published Apr 14, 2021

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-2020 v1.01rc001 Wi-Fi access points. Authentication is not r…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-27246

Published Apr 14, 2021

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link Archer A7 AC1750 1.0.15 routers. Authentication is not required…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2021-28797

Published Apr 14, 2021

A stack-based buffer overflow vulnerability has been reported to affect QNAP NAS devices running Surveillance Station. If exploited, this vulnerability allows attackers to execute…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-35492

Published Mar 18, 2021

A flaw was found in cairo's image-compositor.c in all versions prior to 1.17.4. This flaw allows an attacker who can provide a crafted input file to cairo's image-compositor (for…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-1921

Published Mar 10, 2021

In the crypt function, we attempt to null terminate a buffer using the size of the input salt without validating that the offset is within the buffer. This issue affects HHVM vers…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-22666

Published Mar 3, 2021

Fatek FvDesigner Version 1.5.76 and prior is vulnerable to a stack-based buffer overflow while project files are being processed, allowing an attacker to craft a special project f…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-27749

Published Mar 3, 2021

A flaw was found in grub2 in versions prior to 2.06. Variable names present are expanded in the supplied command line into their corresponding variable contents, using a 1kB stack…

CVSS 6.7 · Medium
evidence mentions
1
Buzz score
11.9
Showing 3,176-3,200 of 3,522 CVEsPage 128 of 141