Skip to main content

CWE archive

CWE-120 CVEs

Programmatic archive

4,314 CVEs tagged with CWE-120885 Critical, 2,246 High, 1,108 Medium, 75 Low, 0 Unrated.

CVE-2026-36818

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda W20E v15.11.0.6 was discovered to contain a buffer overflow in the wewifiWhiteUserInfo parameter of the formAddWewifiWhiteUser function. T…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36817

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda W15E v15.11.0.10 was discovered to contain a buffer overflow in the webAuthWhiteUserInfo parameter of the formAddWebAuthWhiteUser function…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36816

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda W15E v15.11.0.10 was discovered to contain a buffer overflow in the wewifiWhiteUserInfo parameter of the formAddWewifiWhiteUser function.…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36815

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda W15E v15.11.0.10 was discovered to contain a buffer overflow in the hostname parameter of the formSetNetCheckTools function. This vulnerab…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36811

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda W15E v15.11.0.10 was discovered to contain a buffer overflow in the picName parameter of the formDelwebAuthPic function. This vulnerabilit…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36810

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda W15E v15.11.0.10 was discovered to contain a buffer overflow in the gotoUrl parameter of the formPortalAuth function. This vulnerability a…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36809

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda W15E v15.11.0.10 was discovered to contain a buffer overflow in the webAuthWhiteID parameter of the formModifyWebAuthWhiteUser function. T…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36808

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda W15E v15.11.0.10 was discovered to contain a buffer overflow in the webAuthUserInfo parameter of the formAddWebAuthUser function. This vul…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36807

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda W15E v15.11.0.10 was discovered to contain a buffer overflow in the webAuthUserPwd parameter of the formAddWebAuthUser function. This vuln…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36803

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda PW201A v1.0.5 was discovered to contain a buffer overflow in the page parameter of the qossetting function. This vulnerability allows atta…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36802

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda PW201A v1.0.5 was discovered to contain a buffer overflow in the page parameter of the SafeMacFilter function. This vulnerability allows a…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36801

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda G0 v15.11.0.5 was discovered to contain a buffer overflow in the IPMacBindRule parameter of the formIPMacBindAdd function. This vulnerabil…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36800

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda G0 v15.11.0.5 was discovered to contain a buffer overflow in the IPMacBindIndex parameter of the formIPMacBindDel function. This vulnerabi…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36799

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda G0 v15.11.0.5 was discovered to contain a buffer overflow in the portalAuth parameter of the formPortalAuth function. This vulnerability a…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36797

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda G0 v15.11.0.5 was discovered to contain a stack overflow in the IPMacBindRuleIp parameter of the formIPMacBindModify function. This vulner…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-36796

Published Jun 9, 2026

Shenzhen Tenda Technology Co., Ltd Tenda G0 v15.11.0.5 was discovered to contain a stack overflow in the picCropName parameter of the formCropAndSetWewifiPic function. This vulner…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-30141

Published Jun 9, 2026

An issue was discovered in bitbank2 AnimatedGIF v2.2.0. A buffer overflow in the DecodeLZW function allows remote attackers to cause a denial of service (crash) or potentially exe…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-46332

Published Jun 9, 2026

In the Linux kernel, the following vulnerability has been resolved: greybus: gb-beagleplay: bound bootloader receive buffering cc1352_bootloader_rx() appends each serdev chunk i…

CVSS 8.0 · High
evidence mentions
4
Buzz score
21.1
Vendor/product tagsBeta · best-effort

CVE-2026-9698

Published Jun 9, 2026

DBI versions before 1.648 for Perl saved errors in a limited-sized buffer. Error messages that were returned when RaiseError, PrintError or HandleError were set were written to a…

CVSS 9.8 · Critical
evidence mentions
9
Buzz score
42.5
Vendor/product tagsBeta · best-effort

CVE-2026-42536

Published Jun 8, 2026

Heap-based Buffer Overflow vulnerability in Apache HTTP Server with mod_xml2enc, xml2StartParse, and untrusted content This issue affects Apache HTTP Server: from 2.4.0 through 2…

CVSS 7.5 · High
evidence mentions
10
Buzz score
43.5
Vendor/product tagsBeta · best-effort

CVE-2026-34355

Published Jun 8, 2026

A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgrade to version 2.4.68, which fi…

CVSS 7.5 · High
evidence mentions
10
Buzz score
43.5
Vendor/product tagsBeta · best-effort

CVE-2026-11517

Published Jun 8, 2026

A vulnerability was determined in UTT HiPER 2610G up to 3.0.0-171107. This impacts the function strcpy of the file /goform/formConfigDnsFilterGlobal. Executing a manipulation of t…

CVSS 7.4 · High
evidence mentions
5
Buzz score
24.4

CVE-2026-11516

Published Jun 8, 2026

A vulnerability was found in UTT HiPER 2610G up to 3.0.0-171107. This affects the function strcpy of the file /goform/formNatStaticMap. Performing a manipulation of the argument N…

CVSS 2.0 · Low
evidence mentions
6
Buzz score
26.0

CVE-2019-25741

Published Jun 4, 2026

Mobatek MobaXterm 12.1 contains a structured exception handling (SEH) based buffer overflow vulnerability in the username field of session files that allows remote attackers to ex…

CVSS 9.3 · Critical
evidence mentions
3
Buzz score
25.4

CVE-2019-25736

Published Jun 4, 2026

LabF nfsAxe 3.7 Ping Client contains a buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying a malicious payload in the Host IP field. A…

CVSS 8.6 · High
evidence mentions
3
Buzz score
25.4
Showing 76-100 of 4,314 CVEsPage 4 of 173