CWE-121

CWE-121 · 14 records · 8 with a public proof-of-concept

Records the NVD classes under CWE-121, highest CVSS first.

  1. CRITICAL 9.8CVE-2026-71267public PoC

    microtar's mtar_write_file_header and mtar_write_dir_header functions (src/microtar.c) copy a caller-supplied entry name into the 100-byte field of a stack-allocated mtar_header_t via strcpy(h.name, name), with no check that strlen(name) is less than 100 befor

    AI risk analysis on Exploit-DB.ai →

  2. CRITICAL 9.8CVE-2026-61486

    ** UNSUPPORTED WHEN ASSIGNED ** Stack-based Buffer Overflow vulnerability in Apache Lucy. This issue affects Apache Lucy: all versions. As this project is retired, we do not plan to release a version that fixes this issue. Users are recommended to find an al

    lucy

    AI risk analysis on Exploit-DB.ai →

  3. CRITICAL 9.8CVE-2026-45538public PoC

    OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions 4.0.0 and prior, processing a SIP message with a header name longer than 255 bytes causes a stack buffer overflow when sip_to_json() is called in the routing script. Function si

    AI risk analysis on Exploit-DB.ai →

  4. CRITICAL 9.8CVE-2026-49435

    Keysight IxChariot Endpoint and associated products contain a stack-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet and execute arbitrary code with administrative privileges.

    AI risk analysis on Exploit-DB.ai →

  5. CRITICAL 9.8CVE-2017-20242

    Keysight IxChariot Endpoint before 9.5.102 contains a stack-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet to crash the endpoint or potentially execute arbitrary code.

    AI risk analysis on Exploit-DB.ai →

  6. CRITICAL 9.6CVE-2026-25289

    Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.

    sm7550p firmware · sm7550p · sm7635p firmware · sm7635p · sm7675 firmware · sm7675

    AI risk analysis on Exploit-DB.ai →

  7. HIGH 8.8CVE-2026-18898public PoC

    A security flaw has been discovered in UTT HiPER 1200GW up to v2.5.3-170306. This affects the function strcpy of the file /goform/ConfigAdvideo. The manipulation of the argument timestart results in stack-based buffer overflow. The attack can be launched remot

    AI risk analysis on Exploit-DB.ai →

  8. HIGH 8.8CVE-2026-18897public PoC

    A vulnerability was identified in UTT HiPER 1250GW up to v3.2.7-210907-180535. The impacted element is the function strcpy of the file /goform/getOneApConfTempEntry. The manipulation of the argument tempName leads to stack-based buffer overflow. The attack can

    AI risk analysis on Exploit-DB.ai →

  9. HIGH 8.8CVE-2026-18895public PoC

    A vulnerability was found in UTT HiPER 1250GW up to 3.2.7-210907-180535. Impacted is the function strcpy of the file /goform/APSecurity_5g. Performing a manipulation of the argument cipher results in stack-based buffer overflow. It is possible to initiate the

    AI risk analysis on Exploit-DB.ai →

  10. HIGH 7.8CVE-2026-71266public PoC

    tinyobjloader-c's tinyobj_parse_and_index_mtl_file (tinyobj_loader_c.h) reads each line of a .mtl material file into a fixed 4096-byte stack buffer via memcpy(linebuf, p, p_len), guarded only by . The identical vulnerable pattern is duplicated in a second func

    AI risk analysis on Exploit-DB.ai →

  11. HIGH 7.8CVE-2026-10710

    A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, can trigger a stack-based buffer overflow vulnerability in fbxsdk::ExtractDrive. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current pro

    AI risk analysis on Exploit-DB.ai →

  12. HIGH 7.8CVE-2026-10709

    A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, can trigger a stack-based buffer overflow vulnerability in fbxsdk::FbxIO::BinaryReadSectionHeader. A malicious actor can leverage this vulnerability to execute arbitrary code in the context

    AI risk analysis on Exploit-DB.ai →

  13. HIGH 7.5CVE-2026-71265public PoC

    Domoticz's MochadTCP::MatchLine handler for MOCHAD_RFSEC messages (hardware/MochadTCP.cpp) copies network-received data from the up-to-1028-byte m_mochadbuffer into a fixed 50-byte stack buffer tempRFSECbuf using strcpy with no length check, across three separ

    AI risk analysis on Exploit-DB.ai →

  14. UNSCOREDCVE-2026-45809public PoC

    OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions prior to 3.6.6 and 4.0.0-rc1 contain a denial of service vulnerability in the watcherinfo generation functionality. An attacker can create an oversized watcher entry by sending a S

    AI risk analysis on Exploit-DB.ai →