Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2024-11-15 CVE-2023-20125 A vulnerability in the local interface of Cisco BroadWorks Network Server could allow an unauthenticated, remote attacker to exhaust system resources, causing a denial of service (DoS) condition. This vulnerability exists because rate limiting does not occur for certain incoming TCP connections.
network
low complexity
CWE-400
8.6
2024-11-13 CVE-2024-9409 Resource Exhaustion vulnerability in Schneider-Electric products
CWE-400: An Uncontrolled Resource Consumption vulnerability exists that could cause the device to become unresponsive resulting in communication loss when a large amount of IGMP packets is present in the network.
network
low complexity
schneider-electric CWE-400
7.5
2024-11-12 CVE-2024-46891 A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3).
network
low complexity
CWE-400
5.3
2024-10-11 CVE-2024-47497 An Uncontrolled Resource Consumption vulnerability in the http daemon (httpd) of Juniper Networks Junos OS on SRX Series, QFX Series, MX Series and EX Series allows an unauthenticated, network-based attacker to cause Denial-of-Service (DoS). An attacker can send specific HTTPS connection requests to the device, triggering the creation of processes that are not properly terminated.
network
low complexity
CWE-400
7.5
2024-10-02 CVE-2024-20500 Resource Exhaustion vulnerability in Cisco products
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition in the AnyConnect service on an affected device. This vulnerability is due to insufficient resource management when establishing TLS/SSL sessions.
network
low complexity
cisco CWE-400
7.5
2024-10-02 CVE-2024-20502 Resource Exhaustion vulnerability in Cisco products
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to insufficient resource management while establishing SSL VPN sessions.
network
low complexity
cisco CWE-400
7.5
2024-09-30 CVE-2024-8454 Resource Exhaustion vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware
The swctrl service is used to detect and remotely manage PLANET Technology devices.
network
low complexity
planet CWE-400
7.5
2024-08-12 CVE-2024-42481 Resource Exhaustion vulnerability in Skyport Skyportd
Skyport Daemon (skyportd) is the daemon for the Skyport Panel.
network
low complexity
skyport CWE-400
7.5
2024-08-02 CVE-2024-3056 Resource Exhaustion vulnerability in multiple products
A flaw was found in Podman.
network
high complexity
podman-project redhat fedoraproject CWE-400
7.7
2024-08-01 CVE-2024-41123 Resource Exhaustion vulnerability in Ruby-Lang Rexml
REXML is an XML toolkit for Ruby.
network
low complexity
ruby-lang CWE-400
7.5