Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-122

MITRE ↗

CWE-122

257
CRITICAL
1,911
HIGH
479
MEDIUM
65
LOW
2,756 CVEs · Page 44/56
7.8
CVE-2023-35363

Windows Kernel Elevation of Privilege Vulnerability

7.8
CVE-2023-35374

Paint 3D Remote Code Execution Vulnerability

7.8
CVE-2023-2763

Use-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the DWG and DXF file reading

7.8
CVE-2023-36865

Microsoft Office Visio Remote Code Execution Vulnerability

7.8
CVE-2023-36896

Microsoft Excel Remote Code Execution Vulnerability

7.8
CVE-2023-38154

Windows Kernel Elevation of Privilege Vulnerability

7.8
CVE-2023-38170

HEVC Video Extensions Remote Code Execution Vulnerability

7.8
CVE-2023-38212

Adobe Dimension version 3.4.9 is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary c

7.8
CVE-2023-40031

Notepad++ is a free and open-source source code editor. Versions 8.5.6 and prior are vulnerable to heap buffer write ove

7.8
CVE-2023-4738

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1848.

7.8
CVE-2023-4751

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1331.

7.8
CVE-2023-4781

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1873.

7.8
CVE-2023-38071

A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions <

7.8
CVE-2023-38076

A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions <

7.8
CVE-2023-36739

3D Viewer Remote Code Execution Vulnerability

7.8
CVE-2023-36740

3D Viewer Remote Code Execution Vulnerability

7.8
CVE-2023-36770

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-36771

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-36772

3D Builder Remote Code Execution Vulnerability

7.8
CVE-2023-36793

Visual Studio Remote Code Execution Vulnerability

7.8
CVE-2023-38143

Windows Common Log File System Driver Elevation of Privilege Vulnerability

7.8
CVE-2023-4911 KEV

A buffer overflow was discovered in the GNU C Library's dynamic loader ld.so while processing the GLIBC_TUNABLES environ

7.8
CVE-2023-43787

A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a lo

7.8
CVE-2023-36417

Microsoft SQL OLE DB Remote Code Execution Vulnerability

7.8
CVE-2023-36598

Microsoft WDAC ODBC Driver Remote Code Execution Vulnerability

7.8
CVE-2023-36730

Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability

7.8
CVE-2023-36036 KEV

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

7.8
CVE-2023-36408

Windows Hyper-V Elevation of Privilege Vulnerability

7.8
CVE-2023-47042

Adobe Media Encoder version 24.0.2 (and earlier) and 23.6 (and earlier) are affected by a Heap-based Buffer Overflow vul

7.8
CVE-2023-47056

Adobe Premiere Pro version 24.0 (and earlier) and 23.6 (and earlier) are affected by a Heap-based Buffer Overflow vulner

7.8
CVE-2023-41140

A maliciously crafted PRT file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause a Heap-Based Buff

7.8
CVE-2023-21740

Windows Media Remote Code Execution Vulnerability

7.5
CVE-2023-21695

Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability

7.5
CVE-2023-27585

PJSIP is a free and open source multimedia communication library written in C. A buffer overflow vulnerability in versio

7.5
CVE-2023-25664

TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, there is a heap buffer

7.5
CVE-2023-0210

A bug affects the Linux kernel’s ksmbd NTLMv2 authentication and is known to crash the OS immediately in Linux-based sys

7.5
CVE-2023-28227

Windows Bluetooth Driver Remote Code Execution Vulnerability

7.5
CVE-2023-32307

Sofia-SIP is an open-source SIP User-Agent library, compliant with the IETF RFC3261 specification. Referring to [GHSA-85

7.5
CVE-2023-32324

OpenPrinting CUPS is an open source printing system. In versions 2.4.2 and prior, a heap buffer overflow vulnerability w

7.5
CVE-2023-24474

Experion server may experience a DoS due to a heap overflow which could occur when handling a specially crafted message

7.5
CVE-2023-5344

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1969.

7.5
CVE-2023-4692

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a s

7.5
CVE-2023-3430

A vulnerability was found in OpenImageIO, where a heap buffer overflow exists in the src/gif.imageio/gifinput.cpp file.

7.4
CVE-2023-24948

Windows Bluetooth Driver Elevation of Privilege Vulnerability

7.4
CVE-2023-36824

Redis is an in-memory database that persists on disk. In Redit 7.0 prior to 7.0.12, extracting key names from a command

7.3
CVE-2023-23384

Microsoft SQL Server Remote Code Execution Vulnerability

7.3
CVE-2023-7158

A vulnerability was found in MicroPython up to 1.21.0. It has been classified as critical. Affected is the function slic

7.2
CVE-2023-23400

Windows DNS Server Remote Code Execution Vulnerability

7.2
CVE-2023-28254

Windows DNS Server Remote Code Execution Vulnerability

7.2
CVE-2023-30763

Heap-based overflow in Intel(R) SoC Watch based software before version 2021.1 may allow a privileged user to potentiall

Frequently Asked Questions

What is CWE-122?

CWE-122 (CWE-122) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-122?

There are 2,806 CVE records associated with CWE-122 in our database. Of these, 257 are critical severity, 1911 are high severity, and 479 are medium severity.

How can I protect against CWE-122 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-122 using AI-powered security agents.

Detect CWE-122 Vulnerabilities

CyberStrike's AI agents automatically detect cwe-122 vulnerabilities across your infrastructure.

Get Started