Vulnerabilities > Allocation of Resources Without Limits or Throttling
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-12-24 | CVE-2019-19958 | Allocation of Resources Without Limits or Throttling vulnerability in Mz-Automation Libiec61850 1.4.0 In libIEC61850 1.4.0, StringUtils_createStringFromBuffer in common/string_utilities.c has an integer signedness issue that could lead to an attempted excessive memory allocation and denial of service. | 6.5 |
2019-12-04 | CVE-2019-11923 | Allocation of Resources Without Limits or Throttling vulnerability in Facebook Mcrouter In Mcrouter prior to v0.41.0, the deprecated ASCII parser would allocate a buffer to a user-specified length with no maximum length enforced, allowing for resource exhaustion or denial of service. | 7.5 |
2019-11-22 | CVE-2019-15593 | Allocation of Resources Without Limits or Throttling vulnerability in Gitlab 12.2.3 GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments. | 6.5 |
2019-11-06 | CVE-2019-12406 | Allocation of Resources Without Limits or Throttling vulnerability in multiple products Apache CXF before 3.3.4 and 3.2.11 does not restrict the number of message attachments present in a given message. | 6.5 |
2019-11-06 | CVE-2019-6120 | Allocation of Resources Without Limits or Throttling vulnerability in Nicehash Miner An issue was discovered in NiceHash Miner before 2.0.3.0. | 7.5 |
2019-10-31 | CVE-2019-5043 | Allocation of Resources Without Limits or Throttling vulnerability in Google Nest CAM IQ Indoor Firmware 4620002 An exploitable denial-of-service vulnerability exists in the Weave daemon of the Nest Cam IQ Indoor, version 4620002. | 7.5 |
2019-10-22 | CVE-2019-10079 | Allocation of Resources Without Limits or Throttling vulnerability in Apache Traffic Server Apache Traffic Server is vulnerable to HTTP/2 setting flood attacks. | 7.5 |
2019-10-17 | CVE-2019-12611 | Allocation of Resources Without Limits or Throttling vulnerability in Bitdefender BOX Firmware An issue was discovered in Bitdefender BOX firmware versions before 2.1.37.37-34 that affects the general reliability of the product. | 4.4 |
2019-10-14 | CVE-2019-17583 | Allocation of Resources Without Limits or Throttling vulnerability in Idreamsoft Icms 7.0.15 idreamsoft iCMS 7.0.15 allows remote attackers to cause a denial of service (resource consumption) via a query for many comments, as demonstrated by the admincp.php?app=comment&perpage= substring followed by a large positive integer. | 7.5 |
2019-10-09 | CVE-2018-5743 | Allocation of Resources Without Limits or Throttling vulnerability in multiple products By design, BIND is intended to limit the number of TCP clients that can be connected at any given time. | 7.5 |