Tenda FH1202 v1.2.0.14(408) firmware has a stack overflow vulnerability via the adslPwd parameter in the formWanParamete
Dell Client BIOS contains an Out-of-bounds Write vulnerability. A local authenticated malicious user with admin privileg
Out-of-bounds write vulnerability in the HAL-WIFI module Impact: Successful exploitation of this vulnerability may affec
Vim is an open source, command line text editor. Patch v9.1.0038 optimized how the cursor position is calculated and rem
There is a buffer overflow vulnerability in ZTE MF296R. Due to insufficient validation of the SMS parameter length, an a
Out-of-bounds write in some Intel(R) SGX SDK software may allow an authenticated user to potentially enable escalation o
In media service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial
In jpg driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of
In jpg driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of
In vsp driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of
In drm driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of
In autotest driver, there is a possible out of bounds write due to improper input validation. This could lead to local d
In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local denial of service w
can: out of bounds in remove_rx_filter function
In OPTEE, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local information
In nvram, there is a possible information disclosure due to a missing bounds check. This could lead to local information
Dell PowerEdge Server BIOS contains an Improper SMM communication buffer verification vulnerability. A physical high pri
In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o
In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o
In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o
NVIDIA CUDA Toolkit contains a vulnerability in command `cuobjdump` where a user may cause an out-of-bound write by pass
An issue was discovered in Samsung Mobile Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380
Out-of-bounds write in parsing subtitle file in libsubextractor.so prior to SMR Nov-2024 Release 1 allows local attacker
A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, may force an Out-of-Bounds Write vulnerability. A
Tenda AC15 v15.03.05.18 has a stack overflow vulnerability in the time parameter from the setSmartPowerManagement functi
The specific API in TCBServiSign Windows Version from CHANGING Information Technology does does not properly validate th
The specific API in HWATAIServiSign Windows Version from CHANGING Information Technology does not properly validate the
Issue summary: Use of the low-level GF(2^m) elliptic curve APIs with untrusted explicit values for the field polynomial
A memory corruption issue was addressed with improved input validation. This issue is fixed in Safari 18.1, iOS 18.1 and
A vulnerability classified as problematic was found in TOTOLINK EX1800T 9.1.0cu.2112_B20220316. This vulnerability affec
There is a buffer error vulnerability in some Huawei product. An unauthenticated attacker may send special UPNP message
NVIDIA DGX Station A100 and DGX Station A800 SBIOS contains a vulnerability where a user may cause a heap-based buffer o
in OpenHarmony v3.2.4 and prior versions allow an adjacent attacker arbitrary code execution through out-of-bounds writ
Improper Input Validation vulnerability in handling apdu of libsec-ril prior to SMR Apr-2024 Release 1 allows local priv
Improper input validation vulnerability in caminfo driver prior to SMR Jun-2024 Release 1 allows local privileged attack
Cloudflare version of zlib library was found to be vulnerable to memory corruption issues affecting the deflation algori
Improper Input Validation vulnerability in text parsing implementation of libsdffextractor prior to SMR Apr-2024 Release
Out-of-bounds write in Intel(R) Media SDK all versions and some Intel(R) oneVPL software before version 23.3.5 may allow
Insufficient input validation in the ABL may allow a privileged attacker with access to the BIOS menu or UEFI shell to t
Dell Client Platform BIOS contains an Out-of-bounds Write vulnerability in an externally developed component. A high pri
Memory handling issue in editcap could cause denial of service via crafted capture file
A “CWE-121: Stack-based Buffer Overflow” in the wd210std.dll dynamic library packaged with the ThermoscanIP installer al
An insufficient bounds check in PMFW (Power Management Firmware) may allow an attacker to utilize a malicious VF (virtua
in OpenHarmony v4.1.0 and prior versions allow a local attacker cause DOS through out-of-bounds write.
Dell iDRAC Service Module version 5.3.0.0 and prior contains Out of bound write Vulnerability. A privileged local attack
A Improper Input Validation issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 c
A Improper Input Validation issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 c
Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by negative object number in indirect reference in the inp
Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by long Unicode sequence in ActualText.
Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by an invalid character code in a Type 1 font. The root pr
Frequently Asked Questions
What is CWE-787?
CWE-787 (Out-of-bounds Write) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-787?
There are 17,111 CVE records associated with CWE-787 in our database. Of these, 2513 are critical severity, 8761 are high severity, and 2814 are medium severity.
How can I protect against CWE-787 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-787 using AI-powered security agents.
Detect CWE-787 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds write vulnerabilities across your infrastructure.
Get Started