Vulnerabilities > Allocation of Resources Without Limits or Throttling

DATE CVE VULNERABILITY TITLE RISK
2024-01-12 CVE-2024-21604 Allocation of Resources Without Limits or Throttling vulnerability in Juniper Junos OS Evolved
An Allocation of Resources Without Limits or Throttling vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). If a high rate of specific valid packets are processed by the routing engine (RE) this will lead to a loss of connectivity of the RE with other components of the chassis and thereby a complete and persistent system outage.
network
low complexity
juniper CWE-770
7.5
2024-01-10 CVE-2023-37934 Allocation of Resources Without Limits or Throttling vulnerability in Fortinet Fortipam
An allocation of resources without limits or throttling vulnerability [CWE-770] in FortiPAM 1.0 all versions allows an authenticated attacker to perform a denial of service attack via sending crafted HTTP or HTTPS requests in a high frequency.
network
low complexity
fortinet CWE-770
6.5
2024-01-09 CVE-2023-6476 Allocation of Resources Without Limits or Throttling vulnerability in Redhat Openshift Container Platform 3.11/4.13/4.14
A flaw was found in CRI-O that involves an experimental annotation leading to a container being unconfined.
network
low complexity
redhat CWE-770
7.5
2024-01-09 CVE-2024-22164 Allocation of Resources Without Limits or Throttling vulnerability in Splunk Enterprise Security 7.1.0/7.1.1
In Splunk Enterprise Security (ES) versions below 7.1.2, an attacker can use investigation attachments to perform a denial of service (DoS) to the Investigation.
network
low complexity
splunk CWE-770
4.3
2024-01-04 CVE-2024-0241 Allocation of Resources Without Limits or Throttling vulnerability in Diaconou Encodedid::Rails
encoded_id-rails versions before 1.0.0.beta2 are affected by an uncontrolled resource consumption vulnerability.
network
low complexity
diaconou CWE-770
7.5
2024-01-03 CVE-2024-21634 Allocation of Resources Without Limits or Throttling vulnerability in Amazon ION
Amazon Ion is a Java implementation of the Ion data notation.
network
low complexity
amazon CWE-770
7.5
2024-01-03 CVE-2023-46738 Allocation of Resources Without Limits or Throttling vulnerability in Linuxfoundation Cubefs
CubeFS is an open-source cloud-native file storage system.
network
low complexity
linuxfoundation CWE-770
6.5
2023-12-27 CVE-2023-3171 Allocation of Resources Without Limits or Throttling vulnerability in Redhat Jboss Enterprise Application Platform 7.4
A flaw was found in EAP-7 during deserialization of certain classes, which permits instantiation of HashMap and HashTable with no checks on resources consumed.
network
low complexity
redhat CWE-770
7.5
2023-12-22 CVE-2023-50730 Allocation of Resources Without Limits or Throttling vulnerability in Typelevel Grackle
Grackle is a GraphQL server written in functional Scala, built on the Typelevel stack.
network
low complexity
typelevel CWE-770
7.5
2023-12-14 CVE-2023-6563 Allocation of Resources Without Limits or Throttling vulnerability in Redhat products
An unconstrained memory consumption vulnerability was discovered in Keycloak.
network
low complexity
redhat CWE-770
7.7