Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-787

MITRE ↗

Out-of-bounds Write

2,513
CRITICAL
8,761
HIGH
2,814
MEDIUM
124
LOW
14,298 CVEs · Page 48/286
6.8
CVE-2025-20650

In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pri

6.8
CVE-2021-26105

A stack-based buffer overflow vulnerability (CWE-121) in the profile parser of FortiSandbox version 3.2.2 and below, ver

6.8
CVE-2025-20656

In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pri

6.8
CVE-2025-20696

In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pri

6.7
CVE-2024-53836

In wbrc_bt_dev_write of wb_regon_coordinator.c, there is a possible out of bounds write due to a buffer overflow. This c

6.7
CVE-2024-20105

In m4u, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr

6.7
CVE-2024-20140

In power, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

6.7
CVE-2024-20151

In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation

6.7
CVE-2024-33041

Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls,

6.7
CVE-2018-9405

In BnDmAgent::onTransact of dm_agent.cpp, there is a possible out of bounds write due to a missing bounds check. This co

6.7
CVE-2025-20636

In secmem, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

6.7
CVE-2024-45774

A flaw was found in grub2. A specially crafted JPEG file can cause the JPEG parser of grub2 to incorrectly check the bou

6.7
CVE-2024-45776

When reading the language .mo file in grub_mofile_open(), grub2 fails to verify an integer overflow when allocating its

6.7
CVE-2024-45781

A flaw was found in grub2. When reading a symbolic link's name from a UFS filesystem, grub2 fails to validate the string

6.7
CVE-2024-45777

A flaw was found in grub2. The calculation of the translation buffer when reading a language .mo file in grub_gettext_ge

6.7
CVE-2024-45780

A flaw was found in grub2. When reading tar files, grub2 allocates an internal buffer for the file name. However, it fai

6.7
CVE-2025-20657

In vdec, there is a possible permission bypass due to improper input validation. This could lead to local escalation of

6.7
CVE-2025-1122

Out-Of-Bounds Write in TPM2 Reference Library in Google ChromeOS 15753.50.0 stable on Cr50 Boards allows an attacker wi

6.7
CVE-2025-1292

Out-Of-Bounds Write in TPM2 Reference Library in Google ChromeOS 122.0.6261.132 stable on Cr50 Boards allows an attacke

6.7
CVE-2025-20937

Out-of-bounds write in Keymaster trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to write out

6.7
CVE-2025-40579

A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0 HF0). Affected devices

6.7
CVE-2025-40580

A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0 HF0). Affected devices

6.7
CVE-2025-7519

A flaw was found in polkit. When processing an XML policy with 32 or more nested elements in depth, an out-of-bounds wri

6.7
CVE-2025-20697

In Power HAL, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation

6.7
CVE-2025-20698

In Power HAL, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation

6.7
CVE-2025-36908

In lwis_top_register_io of lwis_device_top.c, there is a possible out of bounds write due to an incorrect bounds check.

6.7
CVE-2025-23299

NVIDIA Bluefield and ConnectX contain a vulnerability in the management interface that could allow a malicious actor wit

6.7
CVE-2025-20736

In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es

6.7
CVE-2025-20738

In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es

6.7
CVE-2025-20739

In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es

6.7
CVE-2025-20741

In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es

6.7
CVE-2025-20746

In gnss service, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local esca

6.7
CVE-2025-20747

In gnss service, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local esca

6.7
CVE-2025-20748

In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es

6.7
CVE-2025-20749

In charger, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o

6.7
CVE-2025-33190

NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware where an attacker could cause an out-of-bound write. A

6.7
CVE-2025-20769

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o

6.7
CVE-2025-20774

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o

6.7
CVE-2025-20777

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o

6.6
CVE-2024-20143

In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

6.6
CVE-2024-20144

In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

6.6
CVE-2024-20145

In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

6.6
CVE-2024-20141

In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

6.6
CVE-2024-20142

In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

6.6
CVE-2025-20635

In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

6.6
CVE-2025-20639

In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pri

6.6
CVE-2025-20641

In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pri

6.6
CVE-2025-20642

In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pri

6.6
CVE-2024-38413

Memory corruption while processing frame packets.

6.6
CVE-2024-45543

Memory corruption while accessing MSM channel map and mixer functions.

Frequently Asked Questions

What is CWE-787?

CWE-787 (Out-of-bounds Write) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-787?

There are 17,111 CVE records associated with CWE-787 in our database. Of these, 2513 are critical severity, 8761 are high severity, and 2814 are medium severity.

How can I protect against CWE-787 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-787 using AI-powered security agents.

Detect CWE-787 Vulnerabilities

CyberStrike's AI agents automatically detect out-of-bounds write vulnerabilities across your infrastructure.

Get Started