Potential stack buffer overwrite on the SFTP server side when receiving a malicious packet that has a handle size larger
/etc/avahi/services/z9.service can be Arbitrarily Written.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1
/etc/timezone can be Arbitrarily Written.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
An Out-of-Bounds Write vulnerability is present in Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share version
Stack-based buffer overflow in Azure Application Gateway allows an unauthorized attacker to elevate privileges over a ne
AIS-catcher is a multi-platform AIS receiver. Prior to version 0.64, a heap buffer overflow vulnerability has been ident
An unauthenticated remote attacker can abuse unsafe sscanf calls within the check_account() function to write arbitrary
An unauthenticated remote attacker can abuse unsafe sscanf calls within the check_cookie() function to write arbitrary d
Sony IPELA Network Camera 1.82.01 contains a stack buffer overflow vulnerability in the ftpclient.cgi endpoint that allo
Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbi
Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbi
Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbi
Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbi
Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbi
Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbi
In AudioDecoder::HandleProduceRequest of audio_decoder.cc, there is a possible out of bounds write due to an incorrect b
Ampere AmpereOne AC03 devices before 3.5.9.3, AmpereOne AC04 devices before 4.4.5.2, and AmpereOne M devices before 5.4.
Ampere AmpereOne AC03 devices before 3.5.9.3, AmpereOne AC04 devices before 4.4.5.2, and AmpereOne M devices before 5.4.
An Out-of-bounds Write vulnerability in the WatchGuard Fireware OS iked process may allow a remote unauthenticated attac
Stack-based Buffer Overflow vulnerability in Sharp Display Solutions projectors allows a attacker may execute arbitrary
Stack-based Buffer Overflow vulnerability in Sharp Display Solutions projectors allows a attacker may execute arbitrary
GNU Barcode 0.99 contains a buffer overflow vulnerability in its code 93 encoding process that allows attackers to trigg
libcoap versions up to and including 4.3.5, prior to commit 30db3ea, contain a stack-based buffer overflow in address re
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDL
Out-of-bounds vulnerability in EMF Recode processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer D
VMware ESXi, Workstation, and Fusion contain an integer-overflow vulnerability in the VMXNET3 virtual network adapter. A
VMware ESXi, Workstation, and Fusion contain an integer-underflow in VMCI (Virtual Machine Communication Interface) that
VMware ESXi, Workstation, and Fusion contain a heap-overflow vulnerability in the PVSCSI (Paravirtualized SCSI) controll
Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possi
An out-of-bounds write was addressed with improved input validation. This issue is fixed in iOS 18.3 and iPadOS 18.3, ma
vyper is a Pythonic Smart Contract Language for the EVM. Vyper handles AugAssign statements by first caching the target
An issue was discovered in Samsung Mobile Processor Exynos 1480 and 2400. The lack of a length check leads to out-of-bou
An issue was discovered in Samsung Mobile Processor Exynos 1380. The lack of a length check leads to out-of-bounds write
In RRC in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 13
The PCRE2 library is a set of C functions that implement regular expression pattern matching. In version 10.45, a heap-b
DVP-12SE11T - Out-of-bound memory write Vulnerability
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7
Corosync through 3.1.9, if encryption is disabled or the attacker knows the encryption key, has a stack-based buffer ove
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7
Memory Corruption when a corrupted ELF image with an oversized file size is read into a buffer without authentication.
Memory corruptions can be remotely triggered in the Control-M/Agent when SSL/TLS communication is configured. The issu
In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code executio
in OpenHarmony v4.1.2 and prior versions allow a local attacker cause the device is unable to boot up through out-of-bou
A vulnerability classified as critical has been found in Tenda AC6 15.03.05.16. Affected is the function GetParentContro
Software installed and run as a non-privileged user may conduct improper GPU system calls resulting in platform instabil
Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the funcpara1 parameter in the formSetCfm functio
Tenda AC8v4 V16.03.34.06 has a stack overflow vulnerability. Affected by this vulnerability is the function setSchedWifi
A vulnerability classified as critical has been found in Tenda AC15 15.13.07.13. This affects the function formSetDevNet
In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to a missing bounds check. This could
In DGifSlurp of dgif_lib.c, there is a possible out of bounds write due to an integer overflow. This could lead to remot
Frequently Asked Questions
What is CWE-787?
CWE-787 (Out-of-bounds Write) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-787?
There are 17,111 CVE records associated with CWE-787 in our database. Of these, 2513 are critical severity, 8761 are high severity, and 2814 are medium severity.
How can I protect against CWE-787 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-787 using AI-powered security agents.
Detect CWE-787 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds write vulnerabilities across your infrastructure.
Get Started