Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-120

MITRE ↗

CWE-120

900
CRITICAL
2,344
HIGH
947
MEDIUM
52
LOW
4,280 CVEs · Page 21/86
8.8
CVE-2025-10443

A vulnerability was identified in Tenda AC9 and AC15 15.03.05.14/15.03.05.18. This vulnerability affects the function fo

8.8
CVE-2025-10666

A security flaw has been discovered in D-Link DIR-825 up to 2.10. Affected by this vulnerability is the function sub_410

8.8
CVE-2025-10756

A security flaw has been discovered in UTT HiPER 840G up to 3.1.1-190328. Impacted is an unknown function of the file /g

8.8
CVE-2025-10757

A weakness has been identified in UTT 1200GW up to 3.0.0-170831. The affected element is an unknown function of the file

8.8
CVE-2025-10792

A security vulnerability has been detected in D-Link DIR-513 A1FW110. Affected is an unknown function of the file /gofor

8.8
CVE-2025-10803

A vulnerability has been found in Tenda AC23 up to 16.03.07.52. Affected by this vulnerability is the function sscanf of

8.8
CVE-2025-10815

A vulnerability was identified in Tenda AC20 up to 16.03.08.12. Affected by this issue is the function strcpy of the fil

8.8
CVE-2025-10838

A vulnerability was identified in Tenda AC21 16.03.08.16. The affected element is the function sub_45BB10 of the file /g

8.8
CVE-2025-10942

A vulnerability was identified in H3C Magic B3 up to 100R002. This affects the function AddMacList/EditMacList of the fi

8.8
CVE-2025-10948

A vulnerability has been found in MikroTik RouterOS 7. This affects the function parse_json_element of the file /rest/ip

8.8
CVE-2025-10953

A security vulnerability has been detected in UTT 1200GW and 1250GW up to 3.0.0-170831/3.2.2-200710. This vulnerability

8.8
CVE-2025-55847

Wavlink M86X3A_V240730 contains a buffer overflow vulnerability in the /cgi-bin/ExportAllSettings.cgi file. The vulnerab

8.8
CVE-2025-11091

A security flaw has been discovered in Tenda AC21 up to 16.03.08.16. Affected by this vulnerability is the function ssca

8.8
CVE-2025-11117

A vulnerability was determined in Tenda CH22 1.0.0.1. This vulnerability affects the function formWrlExtraGet of the fil

8.8
CVE-2025-11120

A weakness has been identified in Tenda AC8 16.03.34.06. The affected element is the function formSetServerConfig of the

8.8
CVE-2025-11293

A security vulnerability has been detected in Belkin F9K1015 1.00.10. Affected by this vulnerability is an unknown funct

8.8
CVE-2025-11294

A vulnerability was detected in Belkin F9K1015 1.00.10. Affected by this issue is some unknown functionality of the file

8.8
CVE-2025-11295

A flaw has been found in Belkin F9K1015 1.00.10. This affects an unknown part of the file /goform/formPPPoESetup. This m

8.8
CVE-2025-11296

A vulnerability has been found in Belkin F9K1015 1.00.10. This vulnerability affects unknown code of the file /goform/fo

8.8
CVE-2025-11297

A vulnerability was found in Belkin F9K1015 1.00.10. This issue affects some unknown processing of the file /goform/form

8.8
CVE-2025-11299

A vulnerability was identified in Belkin F9K1015 1.00.10. The affected element is an unknown function of the file /gofor

8.8
CVE-2025-11300

A security flaw has been discovered in Belkin F9K1015 1.00.10. The impacted element is an unknown function of the file /

8.8
CVE-2025-11301

A weakness has been identified in Belkin F9K1015 1.00.10. This affects an unknown function of the file /goform/formWlanS

8.8
CVE-2025-11302

A security vulnerability has been detected in Belkin F9K1015 1.00.10. This impacts an unknown function of the file /gofo

8.8
CVE-2025-11305

A vulnerability has been found in UTT HiPER 840G up to 3.1.1-190328. Affected by this issue is the function strcpy of th

8.8
CVE-2025-11323

A vulnerability was determined in UTT 1250GW up to v2v3.2.2-200710. Affected is the function strcpy of the file /goform/

8.8
CVE-2025-11338

A flaw has been found in D-Link DI-7100G C1 up to 20250928. This vulnerability affects the function sub_4C0990 of the fi

8.8
CVE-2025-11339

A vulnerability has been found in D-Link DI-7100G C1 up to 20250928. This issue affects the function sub_4BD4F8 of the f

8.8
CVE-2025-11355

A vulnerability has been found in UTT 1250GW up to v2v3.2.2-200710. Affected by this vulnerability is the function strcp

8.8
CVE-2025-11356

A vulnerability was found in Tenda AC23 up to 16.03.07.52. Affected by this issue is the function sscanf of the file /go

8.8
CVE-2025-11385

A vulnerability has been found in Tenda AC20 up to 16.03.08.12. The affected element is the function sscanf of the file

8.8
CVE-2025-11408

A security vulnerability has been detected in D-Link DI-7001 MINI 24.04.18B1. The affected element is an unknown functio

8.8
CVE-2025-11444

A security vulnerability has been detected in TOTOLINK N600R up to 4.3.0cu.7866_B20220506. This impacts the function set

8.8
CVE-2025-11651

A vulnerability has been found in UTT 进取 518G up to V3v3.2.7-210919-161313. This vulnerability affects the function sub_

8.8
CVE-2025-11652

A vulnerability was found in UTT 进取 518G up to V3v3.2.7-210919-161313. This issue affects some unknown processing of the

8.8
CVE-2025-11653

A vulnerability was determined in UTT HiPER 2620G up to 3.1.4. Impacted is the function strcpy of the file /goform/fNTP.

8.8
CVE-2025-20709

In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (

8.8
CVE-2025-12232

A vulnerability was detected in Tenda CH22 1.0.0.1. Affected by this vulnerability is the function fromSafeClientFilter

8.8
CVE-2025-12233

A flaw has been found in Tenda CH22 1.0.0.1. Affected by this issue is the function fromSafeUrlFilter of the file /gofor

8.8
CVE-2025-12234

A vulnerability has been found in Tenda CH22 1.0.0.1. This affects the function fromSafeMacFilter of the file /goform/Sa

8.8
CVE-2025-12236

A vulnerability was determined in Tenda CH22 1.0.0.1. This issue affects the function fromDhcpListClient of the file /go

8.8
CVE-2025-12239

A weakness has been identified in TOTOLINK A3300R 17.0.0cu.557_B20221024. The impacted element is the function setDdnsCf

8.8
CVE-2025-12240

A security vulnerability has been detected in TOTOLINK A3300R 17.0.0cu.557_B20221024. This affects the function setDmzCf

8.8
CVE-2025-12265

A weakness has been identified in Tenda CH22 1.0.0.1. Affected by this issue is the function fromVirtualSer of the file

8.8
CVE-2025-12271

A vulnerability was identified in Tenda CH22 1.0.0.1. This affects the function fromRouteStatic of the file /goform/Rout

8.8
CVE-2025-12272

A security flaw has been discovered in Tenda CH22 1.0.0.1. This impacts the function fromAddressNat of the file /goform/

8.8
CVE-2025-12273

A weakness has been identified in Tenda CH22 1.0.0.1. Affected is the function fromwebExcptypemanFilter of the file /gof

8.8
CVE-2025-12274

A security vulnerability has been detected in Tenda CH22 1.0.0.1. Affected by this vulnerability is the function fromP2p

8.8
CVE-2025-12322

A flaw has been found in Tenda CH22 1.0.0.1. Affected by this issue is the function fromNatStaticSetting of the file /go

8.8
CVE-2025-12595

A weakness has been identified in Tenda AC23 16.03.07.52. This impacts the function formSetVirtualSer of the file /gofor

Frequently Asked Questions

What is CWE-120?

CWE-120 (CWE-120) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-120?

There are 5,353 CVE records associated with CWE-120 in our database. Of these, 900 are critical severity, 2344 are high severity, and 947 are medium severity.

How can I protect against CWE-120 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-120 using AI-powered security agents.

Detect CWE-120 Vulnerabilities

CyberStrike's AI agents automatically detect cwe-120 vulnerabilities across your infrastructure.

Get Started