CWE-123: CWE-123

10
Total CVEs
1
Critical
6
High
8.0
Avg CVSS

Yearly Trend

2026
1
2025
4
2024
5

Top Affected Vendors

1 Google 2
2 Mozilla 1
3 Imagemagick 1
4 Debian 1
5 Ami 1
6 Ggerganov 1
7 Siemens Healthineers 1

All CWE-123 CVEs (10)

CVE-2024-42479
10.0

This vulnerability in llama.cpp allows attackers to write arbitrary data to any memory address due to an unsafe pointer in the rpc_tensor structure. T...

Aug 12, 2024
CVE-2025-9900
8.8

This CVE describes a write-what-where vulnerability in Libtiff where processing a specially crafted TIFF image with an abnormally large height value a...

Sep 23, 2025
CVE-2025-33045
8.2

This CVE describes vulnerabilities in APTIOV BIOS firmware where a privileged local user can write arbitrary data to memory locations and access sensi...

Sep 9, 2025
CVE-2024-36877
8.2

This vulnerability allows attackers to write arbitrary data to arbitrary memory locations in affected MSI motherboard firmware via a System Management...

Aug 12, 2024
CVE-2024-2607
8.1

This vulnerability allows attackers to execute arbitrary code on affected systems by overwriting return registers. It specifically impacts Armv7-A sys...

Mar 19, 2024
CVE-2021-45465
7.8

This vulnerability in syngo fastView allows attackers to execute arbitrary code by exploiting improper BMP file parsing. All versions of syngo fastVie...

Jan 4, 2024
CVE-2025-55298
7.5

A format string vulnerability in ImageMagick's InterpretImageFilename function allows attackers to overwrite arbitrary memory regions by passing unsan...

Aug 26, 2025
CVE-2024-20118
6.7

This vulnerability in MediaTek's MMS component allows an attacker to write beyond allocated memory boundaries due to incorrect bounds checking. It ena...

Nov 4, 2024
CVE-2024-20141
6.6

CVE-2024-20141 is an out-of-bounds write vulnerability in V5 DA (likely a MediaTek component) that allows local privilege escalation when an attacker ...

Feb 3, 2025
CVE-2025-29943
N/A

A write-what-where condition vulnerability in AMD CPUs allows an administrator-privileged attacker to modify CPU pipeline configuration, potentially c...

Jan 16, 2026

About CWE-123 (CWE-123)

Our database tracks 10 CVEs classified as CWE-123, with 1 rated critical and 6 rated high severity. The average CVSS score for CWE-123 vulnerabilities is 8.0.

External reference: View CWE-123 on MITRE CWE →

Monitor CWE-123 Vulnerabilities

Get alerted when new CWE-123 CVEs affect your infrastructure.

Start Monitoring Free