Vulnerabilities (CVE)

Filtered by CWE-120
Total 4125 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-29329 1 Sagemcom 2 F\@st 3686, F\@st 3686 Firmware 2026-07-05 N/A 9.8 CRITICAL
Buffer Overflow in the ippprint (Internet Printing Protocol) service in Sagemcom F@st 3686 MAGYAR_4.121.0 allows remote attacker to execute arbitrary code by sending a crafted HTTP request.
CVE-2025-46035 1 Tenda 2 Ac6, Ac6 Firmware 2026-07-05 N/A 7.5 HIGH
Buffer Overflow vulnerability in Tenda AC6 v.15.03.05.16 allows a remote attacker to cause a denial of service via the oversized schedStartTime and schedEndTime parameters in an unauthenticated HTTP GET request to the /goform/openSchedWifi endpoint
CVE-2025-64053 1 Fanvil 2 X210, X210 Firmware 2026-07-05 N/A 7.5 HIGH
A Buffer overflow vulnerability on Fanvil x210 2.12.20 devices allows attackers to cause a denial of service or potentially execute arbitrary commands via crafted POST request to the /cgi-bin/webconfig?page=upload&action=submit endpoint.
CVE-2025-57573 1 Tenda 2 F3, F3 Firmware 2026-07-05 N/A 5.6 MEDIUM
Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow via the wifiTimeClose parameter in goform/setWifi.
CVE-2025-57572 1 Tenda 2 F3, F3 Firmware 2026-07-05 N/A 5.6 MEDIUM
Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow via the onlineList parameter in goform/setParentControl.
CVE-2025-57571 1 Tenda 2 F3, F3 Firmware 2026-07-05 N/A 5.6 MEDIUM
Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow. via the macFilterList parameter in goform/setNAT.
CVE-2025-57570 1 Tenda 2 F3, F3 Firmware 2026-07-05 N/A 5.6 MEDIUM
Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow via the QosList parameter in goform/setQoS.
CVE-2025-57569 1 Tenda 2 F3, F3 Firmware 2026-07-05 N/A 5.6 MEDIUM
Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow via the portList parameter in /goform/setNAT.
CVE-2024-42642 1 Crucial 6 Ct1000mx500ssd1, Ct2000mx500ssd1, Ct250mx500ssd1 and 3 more 2026-07-05 N/A 6.7 MEDIUM
Micron Crucial MX500 Series Solid State Drives M3CR046 is vulnerable to Buffer Overflow, which can be triggered by sending specially crafted ATA packets from the host to the drive controller. NOTE: The supplier states that this vulnerability was fully remediated in December 2024 and that updated firmware is available through Crucial’s official support page.
CVE-2025-46060 1 Totolink 2 N600r, N600r Firmware 2026-07-05 N/A 9.8 CRITICAL
Buffer Overflow vulnerability in TOTOLINK N600R v4.3.0cu.7866_B2022506 allows a remote attacker to execute arbitrary code via the UPLOAD_FILENAME component
CVE-2025-22916 1 Edimax 2 Re11s, Re11s Firmware 2026-07-05 N/A 9.8 CRITICAL
RE11S v1.11 was discovered to contain a stack overflow via the pppUserName parameter in the formPPPoESetup function.
CVE-2025-22907 1 Edimax 2 Re11s, Re11s Firmware 2026-07-05 N/A 9.8 CRITICAL
RE11S v1.11 was discovered to contain a stack overflow via the selSSID parameter in the formWlSiteSurvey function.
CVE-2025-22904 1 Edimax 2 Re11s, Re11s Firmware 2026-07-05 N/A 9.8 CRITICAL
RE11S v1.11 was discovered to contain a stack overflow via the pptpUserName parameter in the setWAN function.
CVE-2024-57483 1 Tenda 2 I24, I24 Firmware 2026-07-05 N/A 9.8 CRITICAL
Tenda i24 V2.0.0.5 is vulnerable to Buffer Overflow in the addWifiMacFilter function.
CVE-2024-57482 1 H3c 2 N12, N12 Firmware 2026-07-05 N/A 9.8 CRITICAL
H3C N12 V100R005 contains a buffer overflow vulnerability due to the lack of length verification in the 5G wireless network processing function. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands by sending a POST request to /bin/webs.
CVE-2024-57480 1 H3c 2 N12, N12 Firmware 2026-07-05 N/A 9.8 CRITICAL
H3C N12 V100R005 contains a buffer overflow vulnerability due to the lack of length verification in the AP configuration function. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands by sending a POST request to /bin/webs.
CVE-2024-57479 1 H3c 2 N12, N12 Firmware 2026-07-05 N/A 9.8 CRITICAL
H3C N12 V100R005 contains a buffer overflow vulnerability due to the lack of length verification in the mac address update function. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands by sending a POST request to /bin/webs.
CVE-2024-57473 1 H3c 2 N12, N12 Firmware 2026-07-05 N/A 9.8 CRITICAL
H3C N12 V100R005 contains a buffer overflow vulnerability due to the lack of length verification in the mac address editing function. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands by sending a POST request to /bin/webs.
CVE-2024-57471 1 H3c 2 N12, N12 Firmware 2026-07-05 N/A 9.8 CRITICAL
H3C N12 V100R005 contains a buffer overflow vulnerability due to the lack of length verification in the 2.4G wireless network processing function. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands by sending a POST request to /bin/webs.
CVE-2024-54887 1 Tp-link 2 Tl-wr940n, Tl-wr940n Firmware 2026-07-05 N/A 8.0 HIGH
TP-Link TL-WR940N V3 and V4 with firmware 3.16.9 and earlier contain a buffer overflow via the dnsserver1 and dnsserver2 parameters at /userRpm/Wan6to4TunnelCfgRpm.htm. This vulnerability allows an authenticated attacker to execute arbitrary code on the remote device in the context of the root user.