$_SecureScope악용 확인 · 악용 확률 · 한국어 권고
CVE Ledger

CWE-121 관련 취약점

같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.

원장 17,280건이 중 악용 확인 1,734건분류: CWE-121

CWE-121 — 주요 취약점

악용이 확인된 것을 먼저 보여줍니다.

9.8IVCWE-121● 랜섬웨어 캠페인에 사용됨CVE-2025-22457Ivanti · Connect Secure, Policy Secure, and ZTA GatewaysA stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure…100.0%심각9.89.0IVCWE-121● 랜섬웨어 캠페인에 사용됨CVE-2025-0282Ivanti · Connect Secure, Policy Secure, and ZTA GatewaysA stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure…100.0%심각9.09.8SOCWE-121● 랜섬웨어 캠페인에 사용됨CVE-2021-20038SonicWall · SMA 100 AppliancesA Stack-based buffer overflow vulnerability in SMA100 Apache httpd server's mod_cgi module environme…99.9%심각9.88.8ADCWE-20● 실제 악용이 확인됨CVE-2009-0927Adobe · Reader and AcrobatStack-based buffer overflow in Adobe Reader and Adobe Acrobat 9 before 9.1, 8 before 8.1.3 , and 7 b…96.6%높음8.88.8MICWE-119● 실제 악용이 확인됨CVE-2008-0015Microsoft · WindowsStack-based buffer overflow in the CComVariant::ReadFromStream function in the Active Template Libra…76.6%높음8.89.8CICWE-121● 실제 악용이 확인됨CVE-2022-20699Cisco · Small Business RV160, RV260, RV340, and RV345 Series RoutersMultiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could…72.5%심각9.87.7CICWE-121● 실제 악용이 확인됨CVE-2025-20352Cisco · IOS and IOS XEA vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and…39.4%높음7.78.8AMCWE-121● 실제 악용이 확인됨CVE-2020-5735Amcrest · Cameras and Network Video Recorder (NVR)Amcrest cameras and NVR are vulnerable to a stack-based buffer overflow over port 37777. An authenti…36.2%높음8.8

전체 목록

120건

CVE-2025-32756악용 확인A stack-based buffer overflow vulnerability [CWE-121] vulnerability in Fortinet FortiCamera 2.1.0 through 2.1.…29.8%심각9.8
CVE-2018-5002악용 확인Adobe Flash Player versions 29.0.0.171 and earlier have a Stack-based buffer overflow vulnerability. Successfu…25.1%높음7.8
CVE-2014-9163악용 확인Stack-based buffer overflow in Adobe Flash Player before 13.0.0.259 and 14.x and 15.x before 15.0.0.246 on Win…20.7%높음7.8
CVE-2022-20708악용 확인Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an …14.9%높음8.0
CVE-2022-20701악용 확인Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an …9.7%높음7.8
CVE-2022-20703악용 확인Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an …9.2%높음8.0
CVE-2022-20700악용 확인Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an …5.7%심각9.8
CVE-2021-27137악용 확인An issue was discovered in router/upnp/src/ssdp.c in DD-WRT before 45724. An unsafe strcpy in the UPnP handlin…4.0%높음8.1
CVE-2025-42599악용 확인Active! mail 6 BuildInfo: 6.60.05008561 and earlier contains a stack-based buffer overflow vulnerability. Rece…3.3%심각9.8
CVE-2026-7273악용 확인A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions throug…2.5%높음8.8
CVE-2025-53521악용 확인When a BIG-IP APM access policy is configured on a virtual server, specific malicious traffic can lead to Remo…2.3%심각9.3
CVE-2013-2597악용 확인Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux …1.5%높음8.4
CVE-2026-101074A weakness has been identified in Netcore NR289-GE 1.4.5102. The affected element is the function password-che…1.3%높음8.9
CVE-2026-86296A vulnerability was determined in D-Link DIR-822A A_101. This vulnerability affects the function strcpy of the…1.3%심각9.3
CVE-2026-94003A vulnerability has been found in Comfast CF-N1-S 2.6.0.1. Impacted is the function get_css_path_from_uri of t…1.0%심각9.3
CVE-2026-69910Stack-based buffer overflow in Windows Hyper-V allows an unauthorized attacker to execute code over a network.1.0%심각9.8
CVE-2026-94089A vulnerability was determined in D-Link DIR-868L 2.01b05. This issue affects the function strcpy of the file …1.0%심각9.3
CVE-2026-61548Rsyslog is a rocket-fast system for log processing. From 7.5.4 until 8.2606.0, the optional mmpstrucdata plugi…0.9%높음8.1
CVE-2026-72982Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker to execute code over a network…0.9%심각9.8
CVE-2026-61674Fluent Bit is a fast and lightweight logs, metrics, and traces processor for Linux, BSD, macOS, and Windows. F…0.9%심각9.2
CVE-2026-80147Lantronix SLC8000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware version…0.8%심각9.4
CVE-2026-80146Lantronix SLC8000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware version…0.8%심각9.4
CVE-2026-69614Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code over a …0.9%높음8.8
CVE-2026-69714Stack-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate pri…0.8%높음8.0
CVE-2026-69759Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a ne…0.8%높음8.8
CVE-2026-69722Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a ne…0.8%높음8.8
CVE-2026-69686Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a ne…0.8%높음8.8
CVE-2026-100908A vulnerability has been found in Eyeplus 57.0.0.0308. This affects an unknown function of the component p2pca…0.8%높음7.7
CVE-2026-73006Stack-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code ov…0.8%높음8.8
CVE-2026-69301Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges over a netwo…0.8%높음8.0
CVE-2026-94184A stack-based buffer overflow flaw was found in fetchmail when built with NTLM support. A malicious or comprom…0.8%높음8.1
CVE-2026-69461Stack-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-69503Stack-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges over a n…0.8%높음8.0
CVE-2026-69689Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges over a network.0.8%높음8.0
CVE-2026-101039A vulnerability was identified in FAST FAC1900R 20190827_2.0.2. Affected by this issue is the function copy_ms…0.7%심각9.3
CVE-2026-81944PLANET IGS-5225-8P2T4S industrial managed switch V1 and V2 firmware versions before 1.2412b260707 and 2.2412b2…0.7%높음7.7
CVE-2026-69620Stack-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a netw…0.7%높음8.1
CVE-2026-69762Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges over a netwo…0.7%높음8.0
CVE-2026-90823FatPipe MPVPN, WARP, and IPVPN appliances running the end-of-life firmware version 10.1.2r60p100 contain a sta…0.7%심각9.8
CVE-2026-69510Stack-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a netw…0.7%높음8.1
CVE-2026-104610A security vulnerability has been detected in Tenda HG7, HG9 and HG10 300001138_en_xpon. This impacts the func…0.6%심각9.3
CVE-2026-81480Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Stack-based Buffer Overflow vulne…0.6%높음7.2
CVE-2026-78439Stack-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code ov…0.6%높음8.8
CVE-2026-67379Stack-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.6%높음8.5
CVE-2026-90689A security flaw has been discovered in Tenda W20E 15.11.0.61068_1546_841_CN_TDC. Impacted is the function form…0.6%높음8.7
CVE-2026-78504Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a ne…0.6%높음8.8
CVE-2026-63292Stack-based buffer overflow in mod_vhost_alias in Apache Software Foundation Apache HTTP Server through 2.4.68…0.6%높음7.5
CVE-2026-96257A flaw has been found in Fast FAC1203R Gigabit Edition 2.0.4. Affected by this issue is the function copy_msg_…0.6%심각9.3
CVE-2026-81945PLANET IGS-5225-8P2T4S industrial managed switch V1 and V2 firmware versions bfore 1.2412b260707 and 2.2412b26…0.6%높음7.5
CVE-2026-90779SIPp through 3.7.7 contains a stack buffer overflow vulnerability in createAuthHeader() when processing SIP au…0.6%높음8.7
CVE-2026-68834Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network…0.6%높음8.0
CVE-2026-62706Out-of-bounds read in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over …0.6%높음8.8
CVE-2026-101081A security flaw has been discovered in D-Link DI-8400 16.07. This vulnerability affects the function menu_nat_…0.5%높음8.5
CVE-2026-76861Netcore NR255-V version 1.5.130703 contains a stack-based buffer overflow in ntools_tcpdump_start_set.cgi caus…0.5%높음8.7
CVE-2026-91003A flaw has been found in D-Link DI-8300 16.07. The affected element is the function rzgl_asp of the file /rzgl…0.5%높음8.5
CVE-2026-90680A security flaw has been discovered in D-Link DIR-823G 1.0.2B05_20181207. The impacted element is the function…0.5%심각9.4
CVE-2026-68878Stack-based buffer overflow in Windows Fast FAT Driver allows an authorized attacker to elevate privileges ove…0.5%높음8.0
CVE-2026-90558sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting routines when …0.5%심각9.3
CVE-2026-91843A stack overflow during the unauthenticated login process may allow an attacker to run arbitrary code remotely…0.5%심각9.8
CVE-2026-91001A security flaw has been discovered in D-Link DI-8400 16.07. This affects the function ddns_asp of the file /d…0.5%높음8.6
CVE-2026-69412Stack-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over an adjac…0.5%높음8.0
CVE-2026-86093IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 could allow an attacker with the ability to control o…0.5%높음7.5
CVE-2026-104611A vulnerability was detected in Tenda AC9 15.03.02.13. Affected is an unknown function of the file /goform/fas…0.5%높음8.5
CVE-2026-90693A flaw has been found in D-Link DIR-878 120B05. This impacts the function SetWan3Settings of the component WAN…0.5%심각9.4
CVE-2026-90692A vulnerability was detected in D-Link DIR-878 120B05. This affects the function SetDynamicDNSIPv6Settings of …0.5%심각9.4
CVE-2026-81388Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-101003A weakness has been identified in Cesanta Mongoose up to 7.21. Affected by this vulnerability is the function …0.5%보통5.5
CVE-2026-93925Stack-based buffer overflow, Incorrect bitwise shift of integer vulnerability in Apache Thrift C++ THeaderProt…0.5%높음8.7
CVE-2026-86318A flaw has been found in java-json-tools json-patch up to 1.13. Affected is the function JsonMergePatch.fromJs…0.4%보통5.5
CVE-2026-101037A vulnerability was found in FAST FAC1200R 5.0_20201119_1.0.2. Affected is the function parse_advertisement_fr…0.5%높음8.6
CVE-2026-76869Netcore NR255-V version 1.5.130703 contains a stack-based buffer overflow in reboot_timer_set.cgi caused by im…0.4%높음8.6
CVE-2026-88406FalkorDB (Redis module) v4.20.1 to v4.20.4 was discovered to contain a stack overflow in the _ValidateUnion_Cl…0.5%높음7.5
CVE-2026-57166PJSIP is a free and open source multimedia communication library written in C. Prior to commit 4472a31, a stac…0.4%보통6.3
CVE-2026-86509A flaw has been found in D-Link DIR-895L A1_102b07. This impacts the function sendOffer/sendACK of the file ud…0.4%높음8.6
CVE-2026-101038A vulnerability was determined in FAST FAC1200R 5.0_20201119_1.0.2. Affected by this vulnerability is the func…0.4%높음8.6
CVE-2026-93372Buffer overflow in WebGL in Google Chrome on on Android prior to 153.0.8010.52 allowed a remote attacker to ex…0.4%심각9.6
CVE-2026-12627Fortra's Core Privileged Access Manager (BoKS) contains a stack-based buffer overflow vulnerability in boks_au…0.4%심각9.8
CVE-2026-103226A vulnerability was identified in Artifex Ghostscript up to 10.09.0. Affected is the function type1_callsubr o…0.4%낮음2.1
CVE-2026-81953Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-76860Netcore NR255-V version 1.5.130703 contains a stack-based buffer overflow in wake_up_set.cgi caused by unbound…0.4%높음8.7
CVE-2026-81396Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-68838Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network…0.4%높음8.0
CVE-2026-90688A vulnerability was identified in Tenda W20E 15.11.0.61068_1546_841_CN_TDC. This issue affects the function fo…0.4%높음7.1
CVE-2026-88408FalkorDB (Redis module) v4.20.1 to v4.20.4 was discovered to contain a stack overflow in the _GetGroup() funct…0.4%보통6.5
CVE-2026-85509FreeIPMI before 1.6.19 has a stack-based buffer overflow in _read_fru_data in libfreeipmi/fru/ipmi-fru.c when …0.4%심각9.8
CVE-2026-85508ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow in _output_dell_system_info_cmc_ipv6_info…0.4%심각9.8
CVE-2026-85506ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow in _get_dell_system_info_idrac_info in ip…0.4%심각9.8
CVE-2026-85507ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow in _output_dell_system_info_cmc_info in i…0.4%심각9.8
CVE-2026-85504FreeIPMI before 1.6.19 has a stack-based buffer overflow in _ipmi_sel_oem_fujitsu_get_sel_entry_long_text in l…0.4%심각9.8
CVE-2026-101354A security flaw has been discovered in FAST FAC1203R 20200116_2.0.4. The affected element is the function _tWl…0.4%높음8.6
CVE-2026-103432apcupsd through 3.14.14 has an sscanf stack-based buffer overflow in getupsvar() in src/cgi/upsfetch.c (used b…0.4%높음8.1
CVE-2026-57165PJSIP is a free and open source multimedia communication library written in C. Prior to commit 628b716, a stac…0.4%보통6.3
CVE-2026-57162PJSIP is a free and open source multimedia communication library written in C. Prior to commit a1b707c, a stac…0.4%높음8.8
CVE-2026-95104Stack-based buffer overflow vulnerability exists in BUFFALO Wi-Fi products. A non-authenticated crafted HTTP r…0.4%높음8.7
CVE-2026-69277Stack-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacke…0.3%높음7.8
CVE-2026-102302Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary c…0.3%높음8.8
CVE-2026-81738OpenVPN 2.5.0 through 2.7.6 on Windows using the tap-windows6 driver allows attackers to trigger an out-of-bou…0.3%낮음2.3
CVE-2026-19774BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-…0.3%높음7.1
CVE-2026-88289GeoVision GV-LPC2211 V1.14 (260903) fails to validate attacker-controlled variable-length fields before copyin…0.3%높음7.5
CVE-2026-69467Stack-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privilege…0.3%높음7.8
CVE-2026-18145A stack-based buffer overflow vulnerability in the spamBlocker (spamd) service of WatchGuard Fireware OS allow…0.3%높음8.6
CVE-2026-103552Stack Overflow vulnerability in Apache Directory LDAP API. Before binding, a client can send a deeply nested s…0.3%높음7.3
CVE-2026-54559PocketSphinx is a small speech recognizer. Prior to 5.1.1, the trie language-model loaders in src/lm/ngram_mod…0.3%보통6.9
CVE-2026-69391Stack-based buffer overflow in Windows Broker Infrastructure Service allows an authorized attacker to elevate …0.3%높음7.8
CVE-2026-86325A stack-based buffer overflow vulnerability exists in protocol gateways' account management interface. The vul…0.3%심각9.4
CVE-2026-17259IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service due to a…0.3%보통4.3
CVE-2026-71337Stack-based buffer overflow in Windows Storage Management Provider allows an authorized attacker to elevate pr…0.3%높음7.8
CVE-2026-69508Stack-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges…0.3%높음7.8
CVE-2026-94954A stack-based buffer overflow vulnerability exists in the web management interface of TOTOLINK N150RT (NTR150)…0.3%높음8.8
CVE-2026-88287GeoVision GV-LPC2211 V1.13 fails to bound the number of Scopes tokens in unauthenticated ONVIF WS-Discovery Pr…0.3%높음7.5
CVE-2023-46273Bonjour Gateway in Extreme Networks IQ Engine before 10.6r1a, and through 10.6r4 before 10.6r5, has an ah_bgd …0.3%높음8.8
CVE-2026-92870A stack-based buffer overflow vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker t…0.3%높음8.7
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.