CWE-121: CWE-121

1,009
Total CVEs
189
Critical
694
High
8.1
Avg CVSS
3
In CISA KEV

Yearly Trend

2026
90
2025
277
2024
388
2023
94
2022
42

Top Affected Vendors

1 Tenda 187
2 Dlink 87
3 Cisco 64
4 Totolink 30
5 Adobe 25
6 Microsoft 24
7 Milesight 24
8 Siemens 21
9 Deltaww 16
10 Debian 16

All CWE-121 CVEs (1,009)

CVE-2023-27404
7.8

A stack-based buffer overflow vulnerability in Tecnomatix Plant Simulation allows attackers to execute arbitrary code by tricking users into opening m...

Mar 14, 2023
CVE-2023-27406
7.8

A stack-based buffer overflow vulnerability in Tecnomatix Plant Simulation allows attackers to execute arbitrary code by tricking users into opening m...

Mar 14, 2023
CVE-2023-22226
7.8

This CVE describes a stack-based buffer overflow vulnerability in Adobe Bridge that could allow an attacker to execute arbitrary code with the privile...

Feb 17, 2023
CVE-2023-22234
7.8

Adobe Premiere Rush versions 2.6 and earlier contain a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code with ...

Feb 17, 2023
CVE-2023-25602
7.8

This CVE describes a stack-based buffer overflow vulnerability in Fortinet FortiWeb web application firewalls. Attackers can exploit it by sending spe...

Feb 16, 2023
CVE-2022-47936
7.8

This CVE describes a stack overflow vulnerability in Siemens JT Open, JT Utilities, and Parasolid software when parsing specially crafted JT files. An...

Feb 14, 2023
CVE-2023-0770
7.8

This CVE describes a stack-based buffer overflow vulnerability in GPAC multimedia framework versions prior to 2.2. Attackers can exploit this by craft...

Feb 9, 2023
CVE-2022-4634
7.8

This vulnerability in Delta Electronic's CNCSoft software allows remote attackers to execute arbitrary code through a stack-based buffer overflow. All...

Feb 3, 2023
CVE-2022-27791
7.8

This CVE describes a stack-based buffer overflow vulnerability in Adobe Acrobat Reader DC that occurs when processing malicious font data in PDF files...

May 11, 2022
CVE-2022-27784
7.8

CVE-2022-27784 is a stack overflow vulnerability in Adobe After Effects that allows arbitrary code execution when a user opens a maliciously crafted f...

May 6, 2022
CVE-2021-42529
7.8

CVE-2021-42529 is a stack-based buffer overflow vulnerability in Adobe XMP Toolkit SDK that could allow arbitrary code execution when a user opens a m...

May 2, 2022
CVE-2021-42531
7.8

CVE-2021-42531 is a stack-based buffer overflow vulnerability in Adobe XMP Toolkit SDK that could allow arbitrary code execution when a user opens a m...

May 2, 2022
CVE-2022-25949
7.8

A stack-based buffer overflow vulnerability in the kwatch3 kernel driver of KINGSOFT Internet Security 9 Plus allows attackers to execute arbitrary co...

Mar 17, 2022
CVE-2022-24094
7.8

CVE-2022-24094 is a stack-based buffer overflow vulnerability in Adobe After Effects that allows arbitrary code execution when a user opens a maliciou...

Mar 11, 2022
CVE-2022-25170
7.8

CVE-2022-25170 is a stack-based buffer overflow vulnerability in industrial control system software that allows attackers to execute arbitrary code by...

Feb 25, 2022
CVE-2021-46638
7.8

This is a stack-based buffer overflow vulnerability in Bentley MicroStation CONNECT that allows remote code execution. Attackers can exploit it by tri...

Feb 18, 2022
CVE-2021-46643
7.8

This is a stack-based buffer overflow vulnerability in Bentley View's DGN file parser. Attackers can execute arbitrary code by tricking users into ope...

Feb 18, 2022
CVE-2022-0629
7.8

CVE-2022-0629 is a stack-based buffer overflow vulnerability in Vim text editor versions prior to 8.2. This allows attackers to execute arbitrary code...

Feb 17, 2022
CVE-2022-23803
7.8

A stack-based buffer overflow vulnerability in KiCad's Gerber/Excellon file parsers allows remote code execution when processing malicious files. User...

Feb 16, 2022
CVE-2021-46155
7.8

This vulnerability allows remote code execution via a stack-based buffer overflow when parsing NEU files in Simcenter Femap. Attackers can execute arb...

Feb 9, 2022
CVE-2022-23947
7.8

A stack-based buffer overflow vulnerability in KiCad's Gerber/Excellon file parsers allows remote code execution when processing malicious files. User...

Feb 4, 2022
CVE-2022-0408
7.8

CVE-2022-0408 is a stack-based buffer overflow vulnerability in Vim text editor that allows attackers to execute arbitrary code by tricking users into...

Jan 30, 2022
CVE-2021-44703
7.8

CVE-2021-44703 is a stack buffer overflow vulnerability in Adobe Acrobat Reader DC that allows arbitrary code execution when a user opens a malicious ...

Jan 14, 2022
CVE-2021-34941
7.8

CVE-2021-34941 is a stack-based buffer overflow vulnerability in Bentley View's JT file parser that allows remote code execution. Attackers can exploi...

Jan 13, 2022
CVE-2021-34925
7.8

CVE-2021-34925 is a stack-based buffer overflow vulnerability in Bentley View's JT file parser that allows remote code execution. Attackers can exploi...

Jan 13, 2022
CVE-2021-43556
7.8

CVE-2021-43556 is a stack-based buffer overflow vulnerability in FATEK WinProladder PLC programming software. Attackers can execute arbitrary code by ...

Dec 28, 2021
CVE-2021-38413
7.8

This vulnerability allows remote attackers to execute arbitrary code on affected Fuji Electric industrial control systems through a stack-based buffer...

Dec 20, 2021
CVE-2021-44432
7.8

This vulnerability allows remote code execution via stack-based buffer overflow when parsing malicious JT files in Siemens JT Utilities and JTTK libra...

Dec 14, 2021
CVE-2021-43982
7.8

Delta Electronics CNCSoft versions 1.01.30 and earlier contain a stack-based buffer overflow vulnerability that could allow remote attackers to execut...

Dec 9, 2021
CVE-2021-42705
7.8

CVE-2021-42705 is a stack-based buffer overflow vulnerability in PLC Editor versions 1.3.8 and earlier that allows attackers to execute arbitrary code...

Nov 22, 2021
CVE-2021-31359
7.8

This CVE describes a local privilege escalation vulnerability in Juniper Junos OS and Junos OS Evolved where a low-privileged local user can crash the...

Oct 19, 2021
CVE-2021-38430
7.8

CVE-2021-38430 is a stack-based buffer overflow vulnerability in FATEK Automation WinProladder software versions 3.30 and prior. Attackers can exploit...

Oct 18, 2021
CVE-2021-38402
7.8

Delta Electronic DOPSoft 2 software versions 2.00.07 and earlier contain a stack-based buffer overflow vulnerability when parsing project files. This ...

Sep 17, 2021
CVE-2021-39847
7.8

CVE-2021-39847 is a stack-based buffer overflow vulnerability in Adobe XMP Toolkit SDK versions 2020.1 and earlier. It allows arbitrary code execution...

Sep 1, 2021
CVE-2021-28606
7.8

Adobe After Effects versions 18.2 and earlier contain a stack-based buffer overflow vulnerability when parsing malicious files. An attacker can exploi...

Aug 24, 2021
CVE-2021-36005
7.8

CVE-2021-36005 is a stack overflow vulnerability in Adobe Photoshop that allows arbitrary code execution when a user opens a malicious PSD file. Affec...

Aug 20, 2021
CVE-2021-32947
7.8

CVE-2021-32947 is a stack-based buffer overflow vulnerability in FATEK Automation FvDesigner software that allows attackers to execute arbitrary code ...

Aug 11, 2021
CVE-2021-31507
7.8

CVE-2021-31507 is a buffer overflow vulnerability in OpenText Brava! Desktop that allows remote code execution when a user opens a malicious CGM file ...

Jun 29, 2021
CVE-2021-27494
7.8

This vulnerability allows remote code execution through specially crafted STP files in KeyShot's 3D file parsing modules. Attackers can exploit stack-...

May 27, 2021
CVE-2021-27413
7.8

CVE-2021-27413 is a stack-based buffer overflow vulnerability in Omron CX-One industrial automation software. Successful exploitation allows remote at...

May 13, 2021
CVE-2021-29097
7.8

Multiple buffer overflow vulnerabilities in Esri's ArcGIS products allow arbitrary code execution when parsing malicious files. Unauthenticated attack...

Mar 25, 2021
CVE-2020-35492
7.8

CVE-2020-35492 is a stack buffer overflow vulnerability in cairo's image-compositor that allows out-of-bounds write operations. Attackers can exploit ...

Mar 18, 2021
CVE-2021-22666
7.8

CVE-2021-22666 is a stack-based buffer overflow vulnerability in Fatek FvDesigner software that allows attackers to execute arbitrary code by crafting...

Mar 3, 2021
CVE-2020-28599
7.8

This CVE-2020-28599 is a stack-based buffer overflow vulnerability in OpenSCAD's STL file import functionality. An attacker can craft a malicious STL ...

Feb 24, 2021
CVE-2020-16243
7.8

This CVE describes multiple buffer overflow vulnerabilities in LeviStudioU software that allow remote code execution. Attackers can exploit these vuln...

Feb 23, 2021
CVE-2020-27001
7.8

This vulnerability allows attackers to execute arbitrary code by exploiting a stack-based buffer overflow in JT2Go and Teamcenter Visualization softwa...

Feb 9, 2021
CVE-2020-26992
7.8

This vulnerability allows remote code execution through malicious CGM files in Siemens JT2Go and Teamcenter Visualization software. Attackers can expl...

Jan 12, 2021
CVE-2020-28384
7.8

This vulnerability in Solid Edge CAD software allows attackers to execute arbitrary code by exploiting a stack-based buffer overflow when parsing mali...

Jan 12, 2021
CVE-2020-27281
7.8

This vulnerability allows remote code execution via a stack-based buffer overflow in Delta Electronics CNCSoft ScreenEditor when processing malicious ...

Jan 11, 2021
CVE-2018-5410
7.8

CVE-2018-5410 is a stack-based buffer overflow vulnerability in the Dokan file system driver (dokan1.sys) that allows local attackers to execute arbit...

Jan 7, 2019

About CWE-121 (CWE-121)

Our database tracks 1,009 CVEs classified as CWE-121, with 189 rated critical and 694 rated high severity. The average CVSS score for CWE-121 vulnerabilities is 8.1.

External reference: View CWE-121 on MITRE CWE →

Monitor CWE-121 Vulnerabilities

Get alerted when new CWE-121 CVEs affect your infrastructure.

Start Monitoring Free