CWE-121— Stack-based Buffer Overflow
A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).— MITRE CWE catalog
3,567 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-121page 31 of 72
- CVE-2024-28535CRITICALCVSS 9.8EG 9.82024-03-12
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the mitInterface parameter of fromAddressNat function.
- CVE-2024-28537CRITICALCVSS 9.8EG 9.82024-03-18
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the page parameter of fromNatStaticSetting function.
- CVE-2024-28547MEDIUMCVSS 6.5EG 6.52024-03-18
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the firewallEn parameter of formSetFirewallCfg function.
- CVE-2024-2855HIGHCVSS 8.8EG 8.82024-03-24
A vulnerability classified as critical was found in Tenda AC15 15.03.05.18/15.03.05.19/15.03.20. Affected by this vulnerability is the function fromSetSysTime of the file /goform/SetSysTimeCfg. The manipulation of the argument time leads t…
- CVE-2024-28550MEDIUMCVSS 4.3EG 4.32024-03-18
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the filePath parameter of formExpandDlnaFile function.
- CVE-2024-28551HIGHCVSS 7.5EG 7.52024-03-26
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the ssid parameter of form_fast_setting_wifi_set function.
- CVE-2024-2856HIGHCVSS 8.8EG 8.82024-03-24
A vulnerability, which was classified as critical, has been found in Tenda AC10 16.03.10.13/16.03.10.20. Affected by this issue is the function fromSetSysTime of the file /goform/SetSysTimeCfg. The manipulation of the argument timeZone lea…
- CVE-2024-28562MEDIUMCVSS 6.8EG 6.82024-03-20
Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the Imf_2_2::copyIntoFrameBuffer() component when reading images in EXR format.
- CVE-2024-28563MEDIUMCVSS 5.9EG 5.92024-03-20
Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the Imf_2_2::DwaCompressor::Classifier::Classifier() function when reading images in EXR format.
- CVE-2024-28566HIGHCVSS 8.4EG 8.42024-03-20
Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the AssignPixel() function when reading images in TIFF format.
- CVE-2024-28567MEDIUMCVSS 6.2EG 6.22024-03-20
Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the FreeImage_CreateICCProfile() function when reading images in TIFF format.
- CVE-2024-28568MEDIUMCVSS 6.2EG 6.22024-03-20
Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the read_iptc_profile() function when reading images in TIFF format.
- CVE-2024-28573MEDIUMCVSS 6.2EG 6.22024-03-20
Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the jpeg_read_exif_profile() function when reading images in JPEG format.
- CVE-2024-28574MEDIUMCVSS 6.2EG 6.22024-03-20
Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the opj_j2k_copy_default_tcp_and_create_tcd() function when reading images in J2K format.
- CVE-2024-28575MEDIUMCVSS 6.2EG 6.22024-03-20
Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the opj_j2k_read_mct() function when reading images in J2K format.
- CVE-2024-28578HIGHCVSS 8.4EG 8.42024-03-20
Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the Load() function when reading images in RAS format.
- CVE-2024-28580HIGHCVSS 8.4EG 8.42024-03-20
Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the ReadData() function when reading images in RAS format.
- CVE-2024-28581HIGHCVSS 8.4EG 8.42024-03-20
Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the _assignPixel<>() function when reading images in TARGA format.
- CVE-2024-28582HIGHCVSS 8.4EG 8.42024-03-20
Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the rgbe_RGBEToFloat() function when reading images in HDR format.
- CVE-2024-28640HIGHCVSS 7.5EG 7.52024-03-16
Buffer Overflow vulnerability in TOTOLink X5000R V9.1.0u.6118-B20201102 and A7000R V9.1.0u.6115-B20201022 allows a remote attacker to cause a denial of service (D0S) via the command field.
- CVE-2024-28877HIGHCVSS 8.8EG 8.82024-06-11
MicroDicom DICOM Viewer is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code on affected installations of DICOM Viewer. User interaction is required to exploit this vulnerability.
- CVE-2024-28898MEDIUMCVSS 6.3EG 6.32024-04-09
Secure Boot Security Feature Bypass Vulnerability
- CVE-2024-28899HIGHCVSS 8.8EG 8.82024-07-09
Secure Boot Security Feature Bypass Vulnerability
- CVE-2024-2891HIGHCVSS 8.8EG 8.82024-03-26
A vulnerability, which was classified as critical, was found in Tenda AC7 15.03.06.44. Affected is the function formQuickIndex of the file /goform/QuickIndex. The manipulation of the argument PPPOEPassword leads to stack-based buffer overf…
- CVE-2024-2892HIGHCVSS 8.8EG 8.82024-03-26
A vulnerability has been found in Tenda AC7 15.03.06.44 and classified as critical. Affected by this vulnerability is the function formSetCfm of the file /goform/setcfm. The manipulation of the argument funcpara1 leads to stack-based buffe…
- CVE-2024-28924MEDIUMCVSS 6.7EG 6.72024-04-09
Secure Boot Security Feature Bypass Vulnerability
- CVE-2024-28925HIGHCVSS 8.0EG 8.02024-04-09
Secure Boot Security Feature Bypass Vulnerability
- CVE-2024-28928HIGHCVSS 8.8EG 8.82024-07-09
SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability
- CVE-2024-2893HIGHCVSS 8.8EG 8.82024-03-26
A vulnerability was found in Tenda AC7 15.03.06.44 and classified as critical. Affected by this issue is the function formSetDeviceName of the file /goform/SetOnlineDevName. The manipulation of the argument devName leads to stack-based buf…
- CVE-2024-28934HIGHCVSS 8.8EG 8.82024-04-09
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
- CVE-2024-2894HIGHCVSS 8.8EG 8.82024-03-26
A vulnerability was found in Tenda AC7 15.03.06.44. It has been classified as critical. This affects the function formSetQosBand of the file /goform/SetNetControlList. The manipulation of the argument list leads to stack-based buffer overf…
- CVE-2024-2895HIGHCVSS 8.8EG 8.82024-03-26
A vulnerability was found in Tenda AC7 15.03.06.44. It has been declared as critical. This vulnerability affects the function formWifiWpsOOB of the file /goform/WifiWpsOOB. The manipulation of the argument index leads to stack-based buffer…
- CVE-2024-2896HIGHCVSS 8.8EG 8.82024-03-26
A vulnerability was found in Tenda AC7 15.03.06.44. It has been rated as critical. This issue affects the function formWifiWpsStart of the file /goform/WifiWpsStart. The manipulation of the argument index leads to stack-based buffer overfl…
- CVE-2024-2898HIGHCVSS 8.8EG 8.82024-03-26
A vulnerability classified as critical was found in Tenda AC7 15.03.06.44. Affected by this vulnerability is the function fromSetRouteStatic of the file /goform/SetStaticRouteCfg. The manipulation of the argument list leads to stack-based …
- CVE-2024-2899HIGHCVSS 8.8EG 8.82024-03-26
A vulnerability, which was classified as critical, has been found in Tenda AC7 15.03.06.44. Affected by this issue is the function fromSetWirelessRepeat of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto leads…
- CVE-2024-2900HIGHCVSS 8.8EG 8.82024-03-26
A vulnerability, which was classified as critical, was found in Tenda AC7 15.03.06.44. This affects the function saveParentControlInfo of the file /goform/saveParentControlInfo. The manipulation of the argument deviceId/time/urls leads to …
- CVE-2024-2901HIGHCVSS 8.8EG 8.82024-03-26
A vulnerability has been found in Tenda AC7 15.03.06.44 and classified as critical. This vulnerability affects the function setSchedWifi of the file /goform/openSchedWifi. The manipulation of the argument schedEndTime leads to stack-based …
- CVE-2024-29012HIGHCVSS 7.5EG 7.52024-06-20
Stack-based buffer overflow vulnerability in the SonicOS HTTP server allows an authenticated remote attacker to cause Denial of Service (DoS) via sscanf function.
- CVE-2024-2902HIGHCVSS 8.8EG 8.82024-03-26
A vulnerability was found in Tenda AC7 15.03.06.44 and classified as critical. This issue affects the function fromSetWifiGusetBasic of the file /goform/WifiGuestSet. The manipulation of the argument shareSpeed leads to stack-based buffer …
- CVE-2024-2903HIGHCVSS 8.8EG 8.82024-03-26
A vulnerability was found in Tenda AC7 15.03.06.44. It has been classified as critical. Affected is the function GetParentControlInfo of the file /goform/GetParentControlInfo. The manipulation of the argument mac leads to stack-based buffe…
- CVE-2024-29045HIGHCVSS 7.5EG 7.52024-04-09
Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
- CVE-2024-29061HIGHCVSS 7.8EG 7.82024-04-09
Secure Boot Security Feature Bypass Vulnerability
- CVE-2024-29164CRITICALCVSS 9.8EG 9.82024-05-14
HDF5 through 1.14.3 contains a stack buffer overflow in H5R__decode_heap, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
- CVE-2024-29421MEDIUMCVSS 6.2EG 6.22024-05-22
xmedcon 0.23.0 and fixed in v.0.24.0 is vulnerable to Buffer Overflow via libs/dicom/basic.c which allows an attacker to execute arbitrary code.
- CVE-2024-29756CRITICALCVSS 9.8EG 9.82024-04-05
In afe_callback of q6afe.c, there is a possible out of bounds write due to a buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CVE-2024-2976HIGHCVSS 8.8EG 8.82024-03-27
A vulnerability was found in Tenda F1203 2.0.1.6. It has been declared as critical. Affected by this vulnerability is the function R7WebsSecurityHandler of the file /goform/execCommand. The manipulation of the argument password leads to st…
- CVE-2024-2977HIGHCVSS 8.8EG 8.82024-03-27
A vulnerability was found in Tenda F1203 2.0.1.6. It has been rated as critical. Affected by this issue is the function formQuickIndex of the file /goform/QuickIndex. The manipulation of the argument PPPOEPassword leads to stack-based buff…
- CVE-2024-2978HIGHCVSS 8.8EG 8.82024-03-27
A vulnerability classified as critical has been found in Tenda F1203 2.0.1.6. This affects the function formSetCfm of the file /goform/setcfm. The manipulation of the argument funcpara1 leads to stack-based buffer overflow. It is possible …
- CVE-2024-2979HIGHCVSS 8.8EG 8.82024-03-27
A vulnerability classified as critical was found in Tenda F1203 2.0.1.6. This vulnerability affects the function setSchedWifi of the file /goform/openSchedWifi. The manipulation of the argument schedStartTime/schedEndTime leads to stack-ba…
- CVE-2024-2980HIGHCVSS 8.8EG 8.82024-03-27
A vulnerability, which was classified as critical, has been found in Tenda FH1202 1.2.0.14(408). This issue affects the function formexeCommand of the file /goform/execCommand. The manipulation of the argument cmdinput leads to stack-based…
Map vulnerabilities like CWE-121 to your infrastructure
EchelonGraph correlates every CVE — across CWE-121 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →