Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-122

MITRE ↗

CWE-122

257
CRITICAL
1,911
HIGH
479
MEDIUM
65
LOW
2,756 CVEs · Page 42/56
8.8
CVE-2023-29372

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

8.8
CVE-2023-35302

Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability

8.8
CVE-2023-2905

Due to a failure in validating the length of a provided MQTT_CMD_PUBLISH parsed message with a variable length header, C

8.8
CVE-2023-38147

Windows Miracast Wireless Display Remote Code Execution Vulnerability

8.8
CVE-2023-36577

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

8.8
CVE-2023-5686

Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.9.0.

8.8
CVE-2023-36400

Windows HMAC Key Derivation Elevation of Privilege Vulnerability

8.8
CVE-2023-36402

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

8.8
CVE-2023-36423

Microsoft Remote Registry Service Remote Code Execution Vulnerability

8.8
CVE-2023-35630

Internet Connection Sharing (ICS) Remote Code Execution Vulnerability

8.8
CVE-2023-35639

Microsoft ODBC Driver Remote Code Execution Vulnerability

8.4
CVE-2023-0208

NVIDIA DCGM for Linux contains a vulnerability in HostEngine (server component) where a user may cause a heap-based buf

8.4
CVE-2023-28523

IBM Informix Dynamic Server 12.10 and 14.10 onsmsync is vulnerable to a heap buffer overflow, caused by improper bounds

8.3
CVE-2023-40465

Several versions of ALEOS, including ALEOS 4.16.0, include an opensource third-party component which can be

8.2
CVE-2023-39946

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prio

8.2
CVE-2023-39947

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prio

8.0
CVE-2023-36425

Windows Distributed File System (DFS) Remote Code Execution Vulnerability

7.8
CVE-2023-0051

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1144.

7.8
CVE-2023-21737

Microsoft Office Visio Remote Code Execution Vulnerability

7.8
CVE-2023-21738

Microsoft Office Visio Remote Code Execution Vulnerability

7.8
CVE-2023-21780

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-21781

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-21782

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-21783

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-21785

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-21786

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-21787

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-21790

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-21791

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-21792

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-21793

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2022-3160

The APDFL.dll contains an out-of-bounds write past the fixed-length heap-based buffer while parsing specially crafted

7.8
CVE-2023-0288

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1189.

7.8
CVE-2023-21587

Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability

7.8
CVE-2023-21594

Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability

7.8
CVE-2023-21605

Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are

7.8
CVE-2023-0433

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1225.

7.8
CVE-2022-42403

This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. Us

7.8
CVE-2022-42405

This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. Us

7.8
CVE-2022-45491

Buffer overflow vulnerability in function json_parse_value in sheredom json.h before commit 0825301a07cbf51653882bf2b153

7.8
CVE-2023-0760

Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to V2.1.0-DEV.

7.8
CVE-2023-0819

Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to v2.3.0-DEV.

7.8
CVE-2023-24550

A vulnerability has been identified in Solid Edge SE2022 (All versions < V222.0MP12), Solid Edge SE2023 (All versions <

7.8
CVE-2023-24551

A vulnerability has been identified in Solid Edge SE2022 (All versions < V222.0MP12), Solid Edge SE2023 (All versions <

7.8
CVE-2023-21528

Microsoft SQL Server Remote Code Execution Vulnerability

7.8
CVE-2023-21804

Windows Graphics Component Elevation of Privilege Vulnerability

7.8
CVE-2023-21812

Windows Common Log File System Driver Elevation of Privilege Vulnerability

7.8
CVE-2023-23376 KEV

Windows Common Log File System Driver Elevation of Privilege Vulnerability

7.8
CVE-2023-23377

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-23378

Print 3D Remote Code Execution Vulnerability

Frequently Asked Questions

What is CWE-122?

CWE-122 (CWE-122) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-122?

There are 2,806 CVE records associated with CWE-122 in our database. Of these, 257 are critical severity, 1911 are high severity, and 479 are medium severity.

How can I protect against CWE-122 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-122 using AI-powered security agents.

Detect CWE-122 Vulnerabilities

CyberStrike's AI agents automatically detect cwe-122 vulnerabilities across your infrastructure.

Get Started