Vulnerabilities > Allocation of Resources Without Limits or Throttling

DATE CVE VULNERABILITY TITLE RISK
2023-01-26 CVE-2023-22739 Allocation of Resources Without Limits or Throttling vulnerability in Discourse
Discourse is an open source platform for community discussion.
network
low complexity
discourse CWE-770
6.5
2023-01-26 CVE-2022-20456 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In AutomaticZenRule of AutomaticZenRule.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-770
7.8
2023-01-26 CVE-2022-20489 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In many functions of AutomaticZenRule.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-770
7.8
2023-01-26 CVE-2022-20490 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In multiple functions of AutomaticZenRule.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-770
7.8
2023-01-26 CVE-2022-20492 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In many functions of AutomaticZenRule.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-770
7.8
2023-01-26 CVE-2022-20494 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In AutomaticZenRule of AutomaticZenRule.java, there is a possible persistent DoS due to resource exhaustion.
local
low complexity
google CWE-770
5.5
2023-01-20 CVE-2023-20047 Allocation of Resources Without Limits or Throttling vulnerability in Cisco products
A vulnerability in the Link Layer Discovery Protocol (LLDP) feature of Cisco Webex Room Phone and Cisco Webex Share devices could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient resource allocation.
low complexity
cisco CWE-770
6.5
2023-01-18 CVE-2021-36630 Allocation of Resources Without Limits or Throttling vulnerability in Ruckuswireless products
DDOS reflection amplification vulnerability in eAut module of Ruckus Wireless SmartZone controller that allows remote attackers to perform DOS attacks via crafted request.
network
low complexity
ruckuswireless CWE-770
7.5
2023-01-13 CVE-2023-22397 Allocation of Resources Without Limits or Throttling vulnerability in Juniper Junos OS Evolved
An Allocation of Resources Without Limits or Throttling weakness in the memory management of the Packet Forwarding Engine (PFE) on Juniper Networks Junos OS Evolved PTX10003 Series devices allows an adjacently located attacker who has established certain preconditions and knowledge of the environment to send certain specific genuine packets to begin a Time-of-check Time-of-use (TOCTOU) Race Condition attack which will cause a memory leak to begin.
high complexity
juniper CWE-770
6.1
2023-01-13 CVE-2023-22403 Allocation of Resources Without Limits or Throttling vulnerability in Juniper Junos
An Allocation of Resources Without Limits or Throttling vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS). On QFX10K Series, Inter-Chassis Control Protocol (ICCP) is used in MC-LAG topologies to exchange control information between the devices in the topology.
network
low complexity
juniper CWE-770
7.5