In the SCEP Server of RouterOS in certain Mikrotik products, an attacker can trigger a heap-based buffer overflow that l
Multiple stack-based buffer overflow vulnerabilities [CWE-121] both in network daemons and in the command line interpret
Heap-based buffer overflow vulnerability in sheifd_create function of libsimba library prior to SMR Apr-2022 Release 1 a
Heap-based buffer overflow vulnerability in parser_iloc function in libsimba library prior to SMR Apr-2022 Release 1 all
Heap-based buffer overflow vulnerability in parser_infe function in libsimba library prior to SMR Apr-2022 Release 1 all
Heap-based buffer overflow vulnerability in parser_single_iref function in libsimba library prior to SMR Apr-2022 Releas
Heap-based buffer overflow vulnerability in sheifd_get_info_image function in libsimba library prior to SMR Apr-2022 Rel
Heap-based buffer overflow vulnerability in parser_ipma function of libsimba library prior to SMR Apr-2022 Release 1 all
A remote execution of arbitrary code vulnerability was discovered in ArubaOS-Switch Devices version(s): ArubaOS-Switch 1
Xlight FTP v3.9.3.2 was discovered to contain a stack-based buffer overflow which allows attackers to leak sensitive inf
Rockwell Automation ThinManager ThinServer versions 11.0.0 - 13.0.0 is vulnerable to a heap-based buffer overflow. An at
An issue was discovered in the Linux kernel before 5.19.16. Attackers able to inject WLAN frames could cause a buffer ov
stb_image.h 2.27 has a heap-based buffer over in stbi__jpeg_load, leading to Information Disclosure or Denial of Service
There is a vulnerability in DHCPv6 packet parsing code that could be explored by remote attacker to craft a packet that
A vulnerability in the Cisco Discovery Protocol processing feature of Cisco IP Phone 7800 and 8800 Series firmware could
A stack-based buffer overflow vulnerability exists in the TGA file format parser of OpenImageIO v2.3.19.0. A specially-c
Multiple memory corruption vulnerabilities exist in the IFFOutput alignment padding functionality of OpenImageIO Project
A heap-based overflow vulnerability in makeContactAGIF in libagifencoder.quram.so library prior to SMR Oct-2022 Release
Heap overflow vulnerability in sflacf_fal_bytes_peek function in libsmat.so library prior to SMR Nov-2022 Release 1 allo
Out-of-bounds write in some Intel(R) XMM(TM) 7560 Modem software before version M2_7560_R_01.2146.00 may allow an unauth
MDB Tools (aka mdbtools) 0.9.2 has a stack-based buffer overflow (at 0x7ffd0c689be0) in mdb_numeric_to_string (called fr
MDB Tools (aka mdbtools) 0.9.2 has a stack-based buffer overflow (at 0x7ffd6e029ee0) in mdb_numeric_to_string (called fr
VMware ESXi (7.0, 6.7 before ESXi670-202111101-SG and 6.5 before ESXi650-202110101-SG), VMware Workstation (16.2.0) and
A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 results in remote code execution if the victim co
A heap-based buffer overflow vulnerability exists in MP4Box in GPAC 1.0.1 via the gp_rtp_builder_do_mpeg12_video functio
A heab-based buffer overflow vulnerability exists in MP4Box in GPAC 1.0.1 via media.c, which allows attackers to cause a
HEVC Video Extensions Remote Code Execution Vulnerability
A heap-based buffer overflow vulnerability exists in GPAC v1.0.1 in the gf_isom_dovi_config_get function in MP4Box, whic
Adobe InCopy version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitra
Adobe InCopy version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitra
Adobe InDesign version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbit
Adobe InDesign version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbit
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
Frequently Asked Questions
What is CWE-787?
CWE-787 (Out-of-bounds Write) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-787?
There are 17,111 CVE records associated with CWE-787 in our database. Of these, 2513 are critical severity, 8761 are high severity, and 2814 are medium severity.
How can I protect against CWE-787 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-787 using AI-powered security agents.
Detect CWE-787 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds write vulnerabilities across your infrastructure.
Get Started