Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2023-06-16 CVE-2023-2793 Resource Exhaustion vulnerability in Mattermost
Mattermost fails to validate links on external websites when constructing a preview for a linked website, allowing an attacker to cause a denial-of-service by a linking to a specially crafted webpage in a message.
network
low complexity
mattermost CWE-400
6.5
2023-06-16 CVE-2023-2831 Resource Exhaustion vulnerability in Mattermost
Mattermost fails to unescape Markdown strings in a memory-efficient way, allowing an attacker to cause a Denial of Service by sending a message containing a large number of escaped characters.
network
low complexity
mattermost CWE-400
6.5
2023-06-15 CVE-2023-2683 Resource Exhaustion vulnerability in Silabs Bluetooth LOW Energy Software Development KIT 5.0.0/5.1.0/5.1.1
A memory leak in the EFR32 Bluetooth LE stack 5.1.0 through 5.1.1 allows an attacker to send an invalid pairing message and cause future legitimate connection attempts to fail.
low complexity
silabs CWE-400
6.5
2023-06-15 CVE-2023-32229 Resource Exhaustion vulnerability in Bosch Cpp13 Firmware and Cpp14 Firmware
Due to an error in the software interface to the secure element chip on Bosch IP cameras of family CPP13 and CPP14, the chip can be permanently damaged when enabling the Stream security option (signing of the video stream) with option MD5, SHA-1 or SHA-256.
network
low complexity
bosch CWE-400
6.5
2023-06-15 CVE-2022-33168 Resource Exhaustion vulnerability in IBM Security Directory Suite VA 8.0.1
IBM Security Directory Suite VA 8.0.1 could allow an attacker to cause a denial of service due to uncontrolled resource consumption.
network
low complexity
ibm CWE-400
7.5
2023-06-13 CVE-2023-2778 Resource Exhaustion vulnerability in Rockwellautomation Factorytalk Transaction Manager
A denial-of-service vulnerability exists in Rockwell Automation FactoryTalk Transaction Manager.
network
low complexity
rockwellautomation CWE-400
7.5
2023-06-13 CVE-2023-32114 Resource Exhaustion vulnerability in SAP Netweaver
SAP NetWeaver (Change and Transport System) - versions 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, allows an authenticated user with admin privileges to maliciously run a benchmark program repeatedly in intent to slowdown or make the server unavailable which may lead to a limited impact on Availability with No impact on Confidentiality and Integrity of the application.
network
low complexity
sap CWE-400
2.7
2023-06-09 CVE-2023-29767 Resource Exhaustion vulnerability in Appcrossx Crossx 1.15.3
An issue found in CrossX v.1.15.3 for Android allows a local attacker to cause a persistent denial of service via the database files.
local
low complexity
appcrossx CWE-400
5.5
2023-06-07 CVE-2023-34109 Resource Exhaustion vulnerability in Zxcvbn-Ts Project Zxcvbn-Ts
zxcvbn-ts is an open source password strength estimator written in typescript.
network
low complexity
zxcvbn-ts-project CWE-400
7.5
2023-06-07 CVE-2023-0121 Resource Exhaustion vulnerability in Gitlab
A denial of service issue was discovered in GitLab CE/EE affecting all versions starting from 13.2.4 before 15.10.8, all versions starting from 15.11 before 15.11.7, all versions starting from 16.0 before 16.0.2 which allows an attacker to cause high resource consumption using malicious test report artifacts.
network
low complexity
gitlab CWE-400
7.5