CWE-118: Incorrect Access of Indexable Resource ('Range Error')
ID
CWE-118
Abstraction
Class
Structure
Simple
Status
Incomplete
Number of CVEs
21
The product does not restrict or incorrectly restricts operations within the boundaries of a resource that is accessed using an index or pointer, such as memory or files.
Modes of Introduction
Phase | Note |
---|---|
Implementation |
Applicable Platforms
Type | Class | Name | Prevalence |
---|---|---|---|
Language | Not Language-Specific | ||
Technology | Not Technology-Specific |
Common Attack Pattern Enumeration and Classification (CAPEC)
The Common Attack Pattern Enumeration and Classification (CAPECâ„¢) effort provides a publicly available catalog of common attack patterns that helps users understand how adversaries exploit weaknesses in applications and other cyber-enabled capabilities.
CAPEC at Mitre.org# ID | Name | Weaknesses |
---|---|---|
CAPEC-8 | Buffer Overflow in an API Call | CWE-118 |
CAPEC-9 | Buffer Overflow in Local Command-Line Utilities | CWE-118 |
CAPEC-10 | Buffer Overflow via Environment Variables | CWE-118 |
CAPEC-14 | Client-side Injection-induced Buffer Overflow | CWE-118 |
CAPEC-24 | Filter Failure through Buffer Overflow | CWE-118 |
CAPEC-45 | Buffer Overflow via Symbolic Links | CWE-118 |
CAPEC-46 | Overflow Variables and Tags | CWE-118 |
CAPEC-47 | Buffer Overflow via Parameter Expansion | CWE-118 |
CVEs Published
CVSS Severity
CVSS Severity - By Year
CVSS Base Score
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |
Loading...