CWE-124: CWE-124
Yearly Trend
Top Affected Vendors
All CWE-124 CVEs (12)
This critical vulnerability allows remote unauthenticated attackers to execute arbitrary code or commands on affected Fortinet devices via crafted req...
Mar 24, 2025This vulnerability allows an unauthenticated remote attacker to cause a denial of service (DoS) by sending crafted packets from the wired network to a...
Apr 15, 2022A heap-based out-of-bounds write vulnerability in Wazuh's decode_win_permissions function allows writing a NULL byte before an allocated buffer. Compr...
Oct 29, 2025KV STUDIO versions 12.23 and prior contain a buffer underflow vulnerability that allows arbitrary code execution when processing specially crafted fil...
Oct 2, 2025Adobe Animate versions 23.0.8, 24.0.5 and earlier contain a buffer underflow vulnerability that could allow arbitrary code execution when a user opens...
Dec 10, 2024CVE-2021-36064 is a buffer underflow vulnerability in Adobe XMP Toolkit that could allow arbitrary code execution when a user opens a malicious file. ...
Sep 1, 2021A buffer underflow vulnerability in Intel PCM software versions before 202307 allows unauthenticated attackers to potentially cause denial of service ...
Feb 14, 2024A stack overflow vulnerability in ImageMagick's mogrify command allows attackers to crash the application or potentially execute arbitrary code by pro...
Jul 14, 2025CVE-2021-38578 is a buffer underflow vulnerability in Tianocore EDK II's System Management Mode (SMM) entry point that allows attackers to corrupt SMR...
Mar 3, 2022This vulnerability in MediaTek Bluetooth firmware allows remote attackers to cause a system crash via an uncaught exception, leading to denial of serv...
Jul 8, 2025This vulnerability allows users in the lpadmin group to exploit an out-of-bounds write vulnerability in CUPS by modifying configuration files through ...
Nov 29, 2025A buffer underflow vulnerability in Glib's content type parsing logic allows integer wraparound for very large inputs, leading to pointer underflow an...
Jan 27, 2026About CWE-124 (CWE-124)
Our database tracks 12 CVEs classified as CWE-124, with 1 rated critical and 8 rated high severity. The average CVSS score for CWE-124 vulnerabilities is 7.3.
External reference: View CWE-124 on MITRE CWE →
Monitor CWE-124 Vulnerabilities
Get alerted when new CWE-124 CVEs affect your infrastructure.
Start Monitoring Free