Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-122

MITRE ↗

CWE-122

257
CRITICAL
1,911
HIGH
479
MEDIUM
65
LOW
2,756 CVEs · Page 33/56
8.8
CVE-2024-37334

Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability

8.8
CVE-2024-38060

Windows Imaging Component Remote Code Execution Vulnerability

8.8
CVE-2024-38088

SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability

8.8
CVE-2024-39883

Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-

8.8
CVE-2024-6994

Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.72 allowed a remote attacker to potentially exploit

8.8
CVE-2024-7534

Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit

8.8
CVE-2024-38114

Windows IP Routing Management Snapin Remote Code Execution Vulnerability

8.8
CVE-2024-38115

Windows IP Routing Management Snapin Remote Code Execution Vulnerability

8.8
CVE-2024-38116

Windows IP Routing Management Snapin Remote Code Execution Vulnerability

8.8
CVE-2024-38120

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-38121

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-38130

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-38154

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-7967

Heap buffer overflow in Fonts in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit h

8.8
CVE-2024-7973

Heap buffer overflow in PDFium in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform an out of bo

8.8
CVE-2024-8193

Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.113 allowed a remote attacker who had compromised the

8.8
CVE-2024-8198

Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.113 allowed a remote attacker who had compromised the

8.8
CVE-2024-32763

A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver

8.8
CVE-2024-26191

Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability

8.8
CVE-2024-37335

Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability

8.8
CVE-2024-8636

Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.137 allowed a remote attacker to potentially exploit h

8.8
CVE-2024-8905

Inappropriate implementation in V8 in Google Chrome prior to 129.0.6668.58 allowed a remote attacker to potentially expl

8.8
CVE-2024-38212

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-38265

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-43453

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-43517

Microsoft ActiveX Data Objects Remote Code Execution Vulnerability

8.8
CVE-2024-43518

Windows Telephony Server Remote Code Execution Vulnerability

8.8
CVE-2024-43564

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-43589

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-43592

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-43593

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-43607

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-43608

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-43611

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

8.8
CVE-2024-38255

SQL Server Native Client Remote Code Execution Vulnerability

8.8
CVE-2024-43462

SQL Server Native Client Remote Code Execution Vulnerability

8.8
CVE-2024-43620

Windows Telephony Service Remote Code Execution Vulnerability

8.8
CVE-2024-43621

Windows Telephony Service Remote Code Execution Vulnerability

8.8
CVE-2024-43622

Windows Telephony Service Remote Code Execution Vulnerability

8.8
CVE-2024-43627

Windows Telephony Service Remote Code Execution Vulnerability

8.8
CVE-2024-48993

SQL Server Native Client Remote Code Execution Vulnerability

8.8
CVE-2024-48994

SQL Server Native Client Remote Code Execution Vulnerability

8.8
CVE-2024-48995

SQL Server Native Client Remote Code Execution Vulnerability

8.8
CVE-2024-48996

SQL Server Native Client Remote Code Execution Vulnerability

8.8
CVE-2024-48997

SQL Server Native Client Remote Code Execution Vulnerability

8.8
CVE-2024-48998

SQL Server Native Client Remote Code Execution Vulnerability

8.8
CVE-2024-48999

SQL Server Native Client Remote Code Execution Vulnerability

8.8
CVE-2024-49000

SQL Server Native Client Remote Code Execution Vulnerability

8.8
CVE-2024-49001

SQL Server Native Client Remote Code Execution Vulnerability

8.8
CVE-2024-49002

SQL Server Native Client Remote Code Execution Vulnerability

Frequently Asked Questions

What is CWE-122?

CWE-122 (CWE-122) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-122?

There are 2,806 CVE records associated with CWE-122 in our database. Of these, 257 are critical severity, 1911 are high severity, and 479 are medium severity.

How can I protect against CWE-122 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-122 using AI-powered security agents.

Detect CWE-122 Vulnerabilities

CyberStrike's AI agents automatically detect cwe-122 vulnerabilities across your infrastructure.

Get Started