Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2023-07-12 CVE-2020-20021 Resource Exhaustion vulnerability in Mikrotik Routeros
An issue discovered in MikroTik Router v6.46.3 and earlier allows attacker to cause denial of service via misconfiguration in the SSH daemon.
network
low complexity
mikrotik CWE-400
7.5
2023-07-03 CVE-2023-26509 Resource Exhaustion vulnerability in Anydesk 7.0.8
AnyDesk 7.0.8 allows remote Denial of Service.
network
low complexity
anydesk CWE-400
7.5
2023-06-30 CVE-2023-1206 Resource Exhaustion vulnerability in multiple products
A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind of SYN flood attack.
5.7
2023-06-28 CVE-2023-21176 Resource Exhaustion vulnerability in Google Android 13.0
In list_key_entries of utils.rs, there is a possible way to disable user credentials due to resource exhaustion.
local
low complexity
google CWE-400
4.4
2023-06-23 CVE-2023-35925 Resource Exhaustion vulnerability in Intellectualsites Fastasyncworldedit
FastAsyncWorldEdit (FAWE) is designed for efficient world editing.
local
low complexity
intellectualsites CWE-400
5.5
2023-06-19 CVE-2023-34166 Resource Exhaustion vulnerability in Huawei Emui
Vulnerability of system restart triggered by abnormal callbacks passed to APIs.Successful exploitation of this vulnerability may cause the system to restart.
network
low complexity
huawei CWE-400
7.5
2023-06-16 CVE-2023-2785 Resource Exhaustion vulnerability in Mattermost
Mattermost fails to properly truncate the postgres error log message of a search query failure allowing an attacker to cause the creation of large log files which can result in Denial of Service
network
low complexity
mattermost CWE-400
4.3
2023-06-16 CVE-2023-2793 Resource Exhaustion vulnerability in Mattermost
Mattermost fails to validate links on external websites when constructing a preview for a linked website, allowing an attacker to cause a denial-of-service by a linking to a specially crafted webpage in a message.
network
low complexity
mattermost CWE-400
6.5
2023-06-16 CVE-2023-2831 Resource Exhaustion vulnerability in Mattermost
Mattermost fails to unescape Markdown strings in a memory-efficient way, allowing an attacker to cause a Denial of Service by sending a message containing a large number of escaped characters.
network
low complexity
mattermost CWE-400
6.5
2023-06-15 CVE-2023-2683 Resource Exhaustion vulnerability in Silabs Bluetooth LOW Energy Software Development KIT 5.0.0/5.1.0/5.1.1
A memory leak in the EFR32 Bluetooth LE stack 5.1.0 through 5.1.1 allows an attacker to send an invalid pairing message and cause future legitimate connection attempts to fail.
low complexity
silabs CWE-400
6.5