Windows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability
Dell BIOS contains a heap buffer overflow vulnerability. A local attacker with admin privileges could potentially explo
Ariel Harush and Roy Hodir from OTORIO have found a flaw in the AXIS A1001 when communicating over OSDP. A heap-based bu
Potential buffer overflow vulnerabilities n the Zephyr Bluetooth subsystem.
Windows Bind Filter Driver Elevation of Privilege Vulnerability
A heap-based buffer overflow vulnerability exists in the way Ichitaro version 2022 1.0.1.57600 processes certain LayoutB
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Microsoft ActiveX Remote Code Execution Vulnerability
Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a he
Due to failure in validating the length provided by an attacker-crafted PPD PostScript document, CUPS and libppd are sus
A vulnerability was found in perl 5.30.0 through 5.38.0. This issue occurs when a crafted regular expression is compiled
ClickHouse® is an open-source column-oriented database management system that allows generating analytical data reports
ClickHouse is an open-source column-oriented database management system that allows generating analytical data reports i
Windows Fax Service Remote Code Execution Vulnerability
A vulnerability in the IPv6 DHCP (DHCPv6) client module of Cisco Adaptive Security Appliance (ASA) Software, Cisco Firep
When reading DesFire keys, the function that reads the card isn't properly checking the boundaries when copying
A buffer overflow in the ReadyBootDxe driver in some Lenovo Notebook products may allow an attacker with local privilege
A buffer overflow in the SystemLoadDefaultDxe driver in some Lenovo Notebook products may allow an attacker with local p
A buffer overflow in the SystemBootManagerDxe driver in some Lenovo Notebook products may allow an attacker with local p
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a heap-based buffer overflow. A local privileged malicious user cou
Windows Boot Manager Security Feature Bypass Vulnerability
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1376.
All versions of GE Digital CIMPLICITY that are not adhering to SDG guidance and accepting documents from untrusted sour
A heap-based buffer overflow vulnerability was found in Samba within the GSSAPI unwrap_des() and unwrap_des3() routines
A heap-based buffer overflow issue was discovered in libjpeg-turbo in h2v2_merged_upsample_internal() function of jdmrge
Due to failure in validating the length provided by an attacker-crafted RTPS packet, Wireshark version 4.0.5 and prior,
Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark version 4.0.5 and prior,
Microsoft SharePoint Server Denial of Service Vulnerability
Microsoft Failover Cluster Information Disclosure Vulnerability
A vulnerability, which was classified as critical, has been found in GPAC 2.3-DEV-rev40-g3602a5ded. This issue affects t
Windows Boot Manager Security Feature Bypass Vulnerability
A heap-based buffer overflow vulnerability was found in coders/tiff.c in ImageMagick. This issue may allow a local atta
Visual Studio Denial of Service Vulnerability
IBM Informix Dynamic Server 12.10 and 14.10 archecker is vulnerable to a heap buffer overflow, caused by improper bound
IBM Informix Dynamic Server 12.10 and 14.10 cdr is vulnerable to a heap buffer overflow, caused by improper bounds chec
jq is a command-line JSON processor. Version 1.7 is vulnerable to heap-based buffer overflow. Version 1.7.1 contains a p
A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_h
Buffer overflow in Zoom Clients before 5.14.5 may allow an unauthenticated user to enable a denial of service via networ
A heap-based Buffer Overflow flaw was discovered in Samba. It could allow a remote, authenticated attacker to exploit th
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.
A heap-based buffer overflow issue was discovered in ImageMagick's ImportMultiSpectralQuantum() function in MagickCore/q
A heap-based buffer overflow vulnerability was found in the ImageMagick package that can lead to the application crashin
A heap-based buffer overflow issue was discovered in ImageMagick's ReadTIM2ImageData() function in coders/tim2.c. A loca
Notepad++ is a free and open-source source code editor. Versions 8.5.6 and prior are vulnerable to heap buffer read over
Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV.
Adobe Audition version 24.0 (and earlier) and 23.6.1 (and earlier) are affected by a Heap-based Buffer Overflow vulnerab
Frequently Asked Questions
What is CWE-122?
CWE-122 (CWE-122) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-122?
There are 2,806 CVE records associated with CWE-122 in our database. Of these, 257 are critical severity, 1911 are high severity, and 479 are medium severity.
How can I protect against CWE-122 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-122 using AI-powered security agents.
Detect CWE-122 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-122 vulnerabilities across your infrastructure.
Get Started