Vulnerabilities > Allocation of Resources Without Limits or Throttling

DATE CVE VULNERABILITY TITLE RISK
2019-12-24 CVE-2019-19958 Allocation of Resources Without Limits or Throttling vulnerability in Mz-Automation Libiec61850 1.4.0
In libIEC61850 1.4.0, StringUtils_createStringFromBuffer in common/string_utilities.c has an integer signedness issue that could lead to an attempted excessive memory allocation and denial of service.
network
low complexity
mz-automation CWE-770
6.5
2019-12-04 CVE-2019-11923 Allocation of Resources Without Limits or Throttling vulnerability in Facebook Mcrouter
In Mcrouter prior to v0.41.0, the deprecated ASCII parser would allocate a buffer to a user-specified length with no maximum length enforced, allowing for resource exhaustion or denial of service.
network
low complexity
facebook CWE-770
7.5
2019-11-22 CVE-2019-15593 Allocation of Resources Without Limits or Throttling vulnerability in Gitlab 12.2.3
GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments.
network
low complexity
gitlab CWE-770
6.5
2019-11-06 CVE-2019-12406 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
Apache CXF before 3.3.4 and 3.2.11 does not restrict the number of message attachments present in a given message.
network
low complexity
apache oracle CWE-770
6.5
2019-11-06 CVE-2019-6120 Allocation of Resources Without Limits or Throttling vulnerability in Nicehash Miner
An issue was discovered in NiceHash Miner before 2.0.3.0.
network
low complexity
nicehash CWE-770
7.5
2019-10-31 CVE-2019-5043 Allocation of Resources Without Limits or Throttling vulnerability in Google Nest CAM IQ Indoor Firmware 4620002
An exploitable denial-of-service vulnerability exists in the Weave daemon of the Nest Cam IQ Indoor, version 4620002.
network
low complexity
google CWE-770
7.5
2019-10-22 CVE-2019-10079 Allocation of Resources Without Limits or Throttling vulnerability in Apache Traffic Server
Apache Traffic Server is vulnerable to HTTP/2 setting flood attacks.
network
low complexity
apache CWE-770
7.5
2019-10-17 CVE-2019-12611 Allocation of Resources Without Limits or Throttling vulnerability in Bitdefender BOX Firmware
An issue was discovered in Bitdefender BOX firmware versions before 2.1.37.37-34 that affects the general reliability of the product.
local
low complexity
bitdefender CWE-770
4.4
2019-10-14 CVE-2019-17583 Allocation of Resources Without Limits or Throttling vulnerability in Idreamsoft Icms 7.0.15
idreamsoft iCMS 7.0.15 allows remote attackers to cause a denial of service (resource consumption) via a query for many comments, as demonstrated by the admincp.php?app=comment&perpage= substring followed by a large positive integer.
network
low complexity
idreamsoft CWE-770
7.5
2019-10-09 CVE-2018-5743 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
By design, BIND is intended to limit the number of TCP clients that can be connected at any given time.
network
low complexity
f5 isc CWE-770
7.5