Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2023-03-06 CVE-2022-3277 Resource Exhaustion vulnerability in multiple products
An uncontrolled resource consumption flaw was found in openstack-neutron.
network
low complexity
redhat openstack CWE-400
6.5
2023-03-06 CVE-2023-26601 Resource Exhaustion vulnerability in Zohocorp products
Zoho ManageEngine ServiceDesk Plus through 14104, Asset Explorer through 6987, ServiceDesk Plus MSP before 14000, and Support Center Plus before 14000 allow Denial-of-Service (DoS).
network
low complexity
zohocorp CWE-400
7.5
2023-03-01 CVE-2023-20014 Resource Exhaustion vulnerability in Cisco Nexus Dashboard
A vulnerability in the DNS functionality of Cisco Nexus Dashboard Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. This vulnerability is due to the improper processing of DNS requests.
network
low complexity
cisco CWE-400
7.5
2023-02-28 CVE-2022-41724 Resource Exhaustion vulnerability in Golang GO
Large handshake records may cause panics in crypto/tls.
network
low complexity
golang CWE-400
7.5
2023-02-28 CVE-2022-20455 Resource Exhaustion vulnerability in Google Android
In addAutomaticZenRule of ZenModeHelper.java, there is a possible persistent denial of service due to resource exhaustion.
local
low complexity
google CWE-400
5.5
2023-02-28 CVE-2023-23689 Resource Exhaustion vulnerability in Dell products
Dell PowerScale nodes A200, A2000, H400, H500, H600, H5600, F800, F810 integrated hardware management software contains an uncontrolled resource consumption vulnerability.
network
low complexity
dell CWE-400
7.5
2023-02-27 CVE-2023-23524 Resource Exhaustion vulnerability in Apple products
A denial-of-service issue was addressed with improved input validation.
network
low complexity
apple CWE-400
7.5
2023-02-25 CVE-2023-26104 Resource Exhaustion vulnerability in Lite-Web-Server Project Lite-Web-Server
All versions of the package lite-web-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes control characters that the decodeURI() function is unable to parse.
network
low complexity
lite-web-server-project CWE-400
7.5
2023-02-25 CVE-2023-25816 Resource Exhaustion vulnerability in Nextcloud Server 25.0.0/25.0.2
Nextcloud is an Open Source private cloud software.
network
low complexity
nextcloud CWE-400
6.5
2023-02-23 CVE-2023-23296 Resource Exhaustion vulnerability in Korenix products
Korenix JetWave 4200 Series 1.3.0 and JetWave 3200 Series 1.6.0 are vulnerable to Denial of Service via /goform/formDefault.
network
low complexity
korenix CWE-400
6.5