CWE-126 · 518 records
Buffer Over-read
CVEs in this class
518 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
56Plan | CVE-2023-49285No exploit | Denial of Service in HTTP Message Processing in Squidsquid-cache · squid · CWE-126 | High7.5 | — | 88.1% | Dec 4, 2023 |
51Plan | CVE-2017-7679Proof of concept | In Apache httpd 2.2.x before 2.2.33 and 2.4.x before 2.4.26, mod_mime can read one byte past the end of a buffer when sending a malicious Coapache · http server · CWE-126 | Critical9.8 | — | 39.3% | Jun 19, 2017 |
47Plan | CVE-2017-7668No exploit | The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token()apache · http server · CWE-126 | High7.5 | — | 57.5% | Jun 19, 2017 |
44Plan | CVE-2023-36397No exploit | Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerabilitymicrosoft · windows 10 1507 · CWE-126 | Critical9.8 | — | 17.5% | Nov 14, 2023 |
42Plan | CVE-2025-21277No exploit | Microsoft Message Queuing (MSMQ) Denial of Service Vulnerabilitymicrosoft · windows 10 1507 · CWE-126 | High7.5 | — | 38.6% | Jan 14, 2025 |
41Plan | CVE-2024-38071No exploit | Windows Remote Desktop Licensing Service Denial of Service Vulnerabilitymicrosoft · windows server 2008 · CWE-126 | High7.5 | — | 35.9% | Jul 9, 2024 |
41Plan | CVE-2018-14790No exploit | Fuji Electric FRENIC LOADER v3.3 v7.3.4.1a of FRENIC-Mini (C1), FRENIC-Mini (C2), FRENIC-Eco, FRENIC-Multi, FRENIC-MEGA, FRENIC-Ace.fujielectric · frenic loader 3.3 firmware · CWE-126 | Critical9.8 | — | 5.4% | Oct 1, 2018 |
40Plan | CVE-2024-20290No exploit | A vulnerability in the OLE2 file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) cisco · secure endpoint · CWE-126 | High7.5 | — | 33.6% | Feb 7, 2024 |
40Plan | CVE-2019-3563No exploit | Wangle's LineBasedFrameDecoder contains logic for identifying newlines which incorrectly advances a buffer, leading to a potential underflowfacebook · wangle · CWE-126 | Critical9.8 | — | 1.7% | Apr 29, 2019 |
39Monitor | CVE-2023-22385No exploit | Buffer Over-read in Data Modemqualcomm · 315 5g iot modem firmware · CWE-126 | Critical9.8 | — | 0.4% | Oct 3, 2023 |
39Monitor | CVE-2017-17772No exploit | Multiple buffer overread vulnerabilities in WLANqualcomm · sd 450 firmware · CWE-126 | Critical9.8 | — | 0.4% | Nov 26, 2024 |
39Monitor | CVE-2024-49839No exploit | Buffer Over-read in WLAN Host Cmnqualcomm · ar8035 firmware · CWE-126 | Critical9.8 | — | 0.3% | Feb 3, 2025 |
38Monitor | CVE-2019-11036No exploit | Heap over-read in PHP EXIF extensionphp · php · CWE-126 | Critical9.1 | — | 7.0% | May 3, 2019 |
36Monitor | CVE-2025-21176No exploit | .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerabilitymicrosoft · .net · CWE-126 | High8.8 | — | 2.3% | Jan 14, 2025 |
36Monitor | CVE-2021-34584No exploit | CODESYS V2 web server: crafted requests could trigger a buffer over-read (DoS)wago · 750-823 firmware · CWE-126 | Critical9.1 | — | 1.1% | Oct 26, 2021 |
36Monitor | CVE-2023-51773No exploit | BACnet Stack before 1.3.2 has a decode function APDU buffer over-read in bacapp_decode_application_data in bacapp.c.bacnetstack · bacnet stack · CWE-126 | Critical9.1 | — | 1.1% | Feb 28, 2024 |
36Monitor | CVE-2025-12106No exploit | Insufficient argument validation in OpenVPN 2.7_alpha1 through 2.7_rc1 allows an attacker to trigger a heap buffer over-read when parsing IPopenvpn · openvpn · CWE-126 | Critical9.1 | — | 0.6% | Dec 1, 2025 |
36Monitor | CVE-2023-33058No exploit | Buffer Copy Without Checking Size of Input in Modemqualcomm · ar8035 firmware · CWE-126 | Critical9.1 | — | 0.4% | Feb 6, 2024 |
36Monitor | CVE-2024-49846No exploit | Buffer Over-read in Multi-Mode Call Processorqualcomm · qca6688aq firmware · CWE-126 | Critical9.1 | — | 0.3% | May 6, 2025 |
36Monitor | CVE-2024-21456No exploit | Buffer Over-read in WLAN HOSTqualcomm · ar8035 firmware · CWE-126 | Critical9.1 | — | 0.3% | Jul 1, 2024 |
35Monitor | CVE-2026-66312No exploit | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerabilitymicrosoft · edge chromium · CWE-126 | High8.8 | — | 1.1% | Aug 3, 2026 |
35Monitor | CVE-2024-43595No exploit | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerabilitymicrosoft · edge chromium · CWE-126 | High8.8 | — | 1.0% | Oct 17, 2024 |
35Monitor | CVE-2025-36855No exploit | EOL .NET 6.0 Runtime Remote Code Execution Vulnerabilitymicrosoft · .net 6.0 · CWE-126 | High8.8 | — | 0.8% | Sep 8, 2025 |
35Monitor | CVE-2023-28572No exploit | Buffer Over-read in WLAN HOSTqualcomm · csrb31024 firmware · CWE-126 | High8.8 | — | 0.4% | Nov 7, 2023 |
34Monitor | CVE-2021-1373No exploit | Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family CAPWAP Denial of Service Vulnerabilitycisco · ios xe · CWE-126 | High8.6 | — | 1.5% | Mar 24, 2021 |
- CVE-2023-4928556Plan
Denial of Service in HTTP Message Processing in Squid
HighCVSS 7.5No exploitEPSS 88%squid-cache · squidDec 4, 2023
- CVE-2017-767951Plan
In Apache httpd 2.2.x before 2.2.33 and 2.4.x before 2.4.26, mod_mime can read one byte past the end of a buffer when sending a malicious Co
CriticalCVSS 9.8Proof of conceptEPSS 39%apache · http serverJun 19, 2017
- CVE-2017-766847Plan
The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token()
HighCVSS 7.5No exploitEPSS 57%apache · http serverJun 19, 2017
- CVE-2023-3639744Plan
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
CriticalCVSS 9.8No exploitEPSS 18%microsoft · windows 10 1507Nov 14, 2023
- CVE-2025-2127742Plan
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
HighCVSS 7.5No exploitEPSS 39%microsoft · windows 10 1507Jan 14, 2025
- CVE-2024-3807141Plan
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
HighCVSS 7.5No exploitEPSS 36%microsoft · windows server 2008Jul 9, 2024
- CVE-2018-1479041Plan
Fuji Electric FRENIC LOADER v3.3 v7.3.4.1a of FRENIC-Mini (C1), FRENIC-Mini (C2), FRENIC-Eco, FRENIC-Multi, FRENIC-MEGA, FRENIC-Ace.
CriticalCVSS 9.8No exploitEPSS 5%fujielectric · frenic loader 3.3 firmwareOct 1, 2018
- CVE-2024-2029040Plan
A vulnerability in the OLE2 file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS)
HighCVSS 7.5No exploitEPSS 34%cisco · secure endpointFeb 7, 2024
- CVE-2019-356340Plan
Wangle's LineBasedFrameDecoder contains logic for identifying newlines which incorrectly advances a buffer, leading to a potential underflow
CriticalCVSS 9.8No exploitEPSS 2%facebook · wangleApr 29, 2019
- CVE-2023-2238539Monitor
Buffer Over-read in Data Modem
CriticalCVSS 9.8No exploitEPSS 0%qualcomm · 315 5g iot modem firmwareOct 3, 2023
- CVE-2017-1777239Monitor
Multiple buffer overread vulnerabilities in WLAN
CriticalCVSS 9.8No exploitEPSS 0%qualcomm · sd 450 firmwareNov 26, 2024
- CVE-2024-4983939Monitor
Buffer Over-read in WLAN Host Cmn
CriticalCVSS 9.8No exploitEPSS 0%qualcomm · ar8035 firmwareFeb 3, 2025
- CVE-2019-1103638Monitor
Heap over-read in PHP EXIF extension
CriticalCVSS 9.1No exploitEPSS 7%php · phpMay 3, 2019
- CVE-2025-2117636Monitor
.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 2%microsoft · .netJan 14, 2025
- CVE-2021-3458436Monitor
CODESYS V2 web server: crafted requests could trigger a buffer over-read (DoS)
CriticalCVSS 9.1No exploitEPSS 1%wago · 750-823 firmwareOct 26, 2021
- CVE-2023-5177336Monitor
BACnet Stack before 1.3.2 has a decode function APDU buffer over-read in bacapp_decode_application_data in bacapp.c.
CriticalCVSS 9.1No exploitEPSS 1%bacnetstack · bacnet stackFeb 28, 2024
- CVE-2025-1210636Monitor
Insufficient argument validation in OpenVPN 2.7_alpha1 through 2.7_rc1 allows an attacker to trigger a heap buffer over-read when parsing IP
CriticalCVSS 9.1No exploitEPSS 1%openvpn · openvpnDec 1, 2025
- CVE-2023-3305836Monitor
Buffer Copy Without Checking Size of Input in Modem
CriticalCVSS 9.1No exploitEPSS 0%qualcomm · ar8035 firmwareFeb 6, 2024
- CVE-2024-4984636Monitor
Buffer Over-read in Multi-Mode Call Processor
CriticalCVSS 9.1No exploitEPSS 0%qualcomm · qca6688aq firmwareMay 6, 2025
- CVE-2024-2145636Monitor
Buffer Over-read in WLAN HOST
CriticalCVSS 9.1No exploitEPSS 0%qualcomm · ar8035 firmwareJul 1, 2024
- CVE-2026-6631235Monitor
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 1%microsoft · edge chromiumAug 3, 2026
- CVE-2024-4359535Monitor
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 1%microsoft · edge chromiumOct 17, 2024
- CVE-2025-3685535Monitor
EOL .NET 6.0 Runtime Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 1%microsoft · .net 6.0Sep 8, 2025
- CVE-2023-2857235Monitor
Buffer Over-read in WLAN HOST
HighCVSS 8.8No exploitEPSS 0%qualcomm · csrb31024 firmwareNov 7, 2023
- CVE-2021-137334Monitor
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family CAPWAP Denial of Service Vulnerability
HighCVSS 8.6No exploitEPSS 1%cisco · ios xeMar 24, 2021