CWE-121: CWE-121
Yearly Trend
Top Affected Vendors
All CWE-121 CVEs (1,015)
A critical stack-based buffer overflow vulnerability exists in Totolink N200RE routers running firmware version 9.3.5u.6139_B20201216. Attackers can r...
Jan 29, 2024A critical stack-based buffer overflow vulnerability in Tenda i9 routers allows remote attackers to execute arbitrary code by sending specially crafte...
Jan 29, 2024A critical stack-based buffer overflow vulnerability exists in Tenda W6 routers running firmware version 1.0.0.9(4122). Attackers can remotely exploit...
Jan 29, 2024A critical stack-based buffer overflow vulnerability in Tenda i6 routers allows remote attackers to execute arbitrary code by sending specially crafte...
Jan 29, 2024A critical stack-based buffer overflow vulnerability exists in Tenda i6 routers version 1.0.0.9(3857). Remote attackers can exploit this via the HTTP ...
Jan 29, 2024A critical stack-based buffer overflow vulnerability in Tenda A15 routers allows remote attackers to execute arbitrary code by manipulating the 'mac' ...
Jan 15, 2024This critical vulnerability in Tenda A15 routers allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the web manage...
Jan 15, 2024This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023This vulnerability allows authenticated attackers to execute arbitrary code on Milesight UR32L routers by sending specially crafted HTTP requests that...
Jul 6, 2023Multiple buffer overflow vulnerabilities in the vtysh_ubus binary of Milesight UR32L routers allow arbitrary code execution via specially crafted HTTP...
Jul 6, 2023This vulnerability allows authenticated attackers to execute arbitrary code on Milesight UR32L routers by sending specially crafted HTTP requests that...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023This vulnerability allows authenticated attackers to execute arbitrary code on Milesight UR32L routers by exploiting buffer overflows in the vtysh_ubu...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023Multiple buffer overflow vulnerabilities in the vtysh_ubus binary of Milesight UR32L routers allow arbitrary code execution via specially crafted HTTP...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023This CVE describes multiple buffer overflow vulnerabilities in the vtysh_ubus binary of Milesight UR32L routers, caused by unsafe sprintf usage. Attac...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023This vulnerability allows attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially crafted HTTP reques...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023This vulnerability allows authenticated attackers with high privileges to execute arbitrary code on Milesight UR32L routers by sending specially craft...
Jul 6, 2023A stack-based buffer overflow vulnerability in ASUS RT-AC86U routers allows remote attackers with administrator privileges to execute arbitrary system...
Jun 2, 2023CVE-2023-27498 is a memory corruption vulnerability in SAP Host Agent (SAPOSCOL) version 7.22 that allows unauthenticated attackers with network acces...
Mar 14, 2023This CVE describes a stack-based buffer overflow vulnerability in Dell iDRAC9 and iDRAC8 remote management controllers. An authenticated attacker with...
Jan 25, 2022This CVE describes a stack-based buffer overflow in the CMA readfile function of Garrett Metal Detectors iC Module CMA Version 5.0, allowing authentic...
Dec 22, 2021A buffer overflow vulnerability in the web application of Siemens SICAM Q100 power meters allows remote attackers with engineer or admin privileges to...
Dec 14, 2021This vulnerability allows attackers to execute arbitrary code on Samsung devices with Exynos CP chipsets by exploiting a stack-based buffer overflow. ...
Oct 6, 2021This vulnerability allows remote attackers to execute arbitrary code on affected IP cameras by exploiting a stack-based buffer overflow in the profile...
Sep 13, 2021This vulnerability allows remote attackers to execute arbitrary code on affected IP cameras via a stack-based buffer overflow in the action parameter....
Sep 13, 2021This vulnerability affects multiple IP camera devices from UDP Technology, Geutebrück, and other vendors. It allows remote attackers to execute arbit...
Sep 13, 2021This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...
Feb 4, 2021This vulnerability allows authenticated attackers with administrator credentials to execute arbitrary code as root or cause denial of service on affec...
Feb 4, 2021This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...
Feb 4, 2021This vulnerability allows authenticated attackers with administrator credentials to execute arbitrary code as root or cause denial of service on affec...
Feb 4, 2021This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...
Feb 4, 2021This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...
Feb 4, 2021This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...
Feb 4, 2021This vulnerability allows authenticated attackers with administrator credentials to execute arbitrary code as root or cause denial of service on affec...
Feb 4, 2021This vulnerability allows authenticated attackers with administrator credentials to execute arbitrary code as root or cause denial of service on affec...
Feb 4, 2021This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...
Feb 4, 2021This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...
Feb 4, 2021This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...
Feb 4, 2021About CWE-121 (CWE-121)
Our database tracks 1,015 CVEs classified as CWE-121, with 192 rated critical and 697 rated high severity. The average CVSS score for CWE-121 vulnerabilities is 8.1.
External reference: View CWE-121 on MITRE CWE →
Monitor CWE-121 Vulnerabilities
Get alerted when new CWE-121 CVEs affect your infrastructure.
Start Monitoring Free