Asus RT-N10LX Router v2.0.0.39 was discovered to contain a stack overflow via the mac parameter at /start-apply.html. NO
An issue was discovered flexjson thru 3.3 allows attackers to cause a denial of service or other unspecified impacts via
An issue was discovered json-io thru 4.14.0 allows attackers to cause a denial of service or other unspecified impacts v
An issue was discovered mjson thru 1.4.1 allows attackers to cause a denial of service or other unspecified impacts via
An issue was discovered ph-json thru 9.5.5 allows attackers to cause a denial of service or other unspecified impacts vi
An issue was discovered sojo thru 1.1.1 allows attackers to cause a denial of service or other unspecified impacts via c
An issue was discovered jmarsden/jsonij thru 0.5.2 allows attackers to cause a denial of service or other unspecified im
An issue was discovered JSONUtil thru 5.0 allows attackers to cause a denial of service or other unspecified impacts via
An issue was discovered pbjson thru 0.4.0 allows attackers to cause a denial of service or other unspecified impacts via
An issue was discovered genson thru 1.6 allows attackers to cause a denial of service or other unspecified impacts via c
An issue was discovered hjson thru 3.0.0 allows attackers to cause a denial of service or other unspecified impacts via
An issue was discovered jtidy thru r938 allows attackers to cause a denial of service or other unspecified impacts via c
An issue was discovered htmlcleaner thru = 2.28 allows attackers to cause a denial of service or other unspecified impac
An issue was discovered jjson thru 0.1.7 allows attackers to cause a denial of service or other unspecified impacts via
A maliciously crafted favicon could have led to an out of memory crash. This vulnerability affects Firefox < 113.
Configuration defects in the secure OS module.Successful exploitation of this vulnerability will affect availability.
If the `recursive-clients` quota is reached on a BIND 9 resolver configured with both `stale-answer-enable yes;` and `st
A logic issue was addressed with improved state management. This issue is fixed in iOS 15.7.6 and iPadOS 15.7.6, macOS B
H3C Magic B1STW B1STV100R012 was discovered to contain a stack overflow via the function SetAPInfoById. This vulnerabili
A stack overflow in the Edit_BasicSSID function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service
A stack overflow in the AddMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS
A stack overflow in the EditMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (Do
A stack overflow in the EditWlanMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service
A stack overflow in the UpdateWanMode function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (
A stack overflow in the UpdateWanParams function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service
A stack overflow in the Edit_BasicSSID_5G function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Servi
A stack overflow in the AddWlanMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service
A stack overflow in the UpdateMacClone function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service
A stack overflow in the UpdateSnat function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS
A vulnerability was found in libX11. The security flaw occurs because the functions in src/InitExt.c in libX11 do not ch
A vulnerability has been identified in SiPass integrated (All versions < V2.90.3.8). Affected server applications improp
Where this vulnerability exists in the Rockwell Automation 1756-EN4* Ethernet/IP communication products, it could allow
Experion server may experience a DoS due to a stack overflow when handling a specially crafted message.
Experion server may experience a DoS due to a heap overflow which could occur when handling a specially crafted message
Controller DoS due to buffer overflow in the handling of a specially crafted message received by the controller. See Hon
A heap overflow vulnerability found in EdgeRouters and Aircubes allows a malicious actor to interrupt UPnP service to sa
An out-of-bounds write vulnerability on windows operating systems causes the Ivanti AntiVirus Product to crash. Update t
A vulnerability exists in HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product. The vu
PTC’s KEPServerEX Versions 6.0 to 6.14.263 are vulnerable to being made to read a recursively defined object that leads
In some cases, an untrusted input stream was copied to a stack buffer without checking its size. This resulted in a pote
Out-of-bounds write vulnerability in parser_hvcC function of libsimba library prior to SMR Aug-2023 Release 1 allows cod
async-sockets-cpp through 0.3.1 has a stack-based buffer overflow in ReceiveFrom and Receive in udpsocket.hpp when proce
Tenda A18 V15.13.07.09 was discovered to contain a stack overflow via the rule_info parameter in the formAddMacfilterRul
Tenda A18 V15.13.07.09 was discovered to contain a stack overflow via the security parameter in the formWifiBasicSet fun
Tenda A18 V15.13.07.09 was discovered to contain a stack overflow via the wpapsk_crypto2_4g parameter in the fromSetWire
NTSC-CRT 2.2.1 has an integer overflow and out-of-bounds write in loadBMP in bmp_rw.c because a file's width, height, an
Veilid before 0.1.9 does not check the size of uncompressed data during decompression upon an envelope receipt, which al
Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the list parameter in the save_virtualser_data f
Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the list parameter in the set_qosMib_list functi
Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the time parameter in the sscanf function.
Frequently Asked Questions
What is CWE-787?
CWE-787 (Out-of-bounds Write) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-787?
There are 17,111 CVE records associated with CWE-787 in our database. Of these, 2513 are critical severity, 8761 are high severity, and 2814 are medium severity.
How can I protect against CWE-787 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-787 using AI-powered security agents.
Detect CWE-787 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds write vulnerabilities across your infrastructure.
Get Started