Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2023-05-10 CVE-2023-25179 Resource Exhaustion vulnerability in Intel Unite
Uncontrolled resource consumption in the Intel(R) Unite(R) android application before Release 17 may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-400
5.5
2023-05-10 CVE-2022-4008 Resource Exhaustion vulnerability in Octopus Server
In affected versions of Octopus Deploy it is possible to upload a zipbomb file as a task which results in Denial of Service
local
low complexity
octopus CWE-400
5.5
2023-05-05 CVE-2023-22874 Resource Exhaustion vulnerability in IBM MQ Appliance
IBM MQ Clients 9.2 CD, 9.3 CD, and 9.3 LTS are vulnerable to a denial of service attack when processing configuration files.
local
low complexity
ibm CWE-400
5.5
2023-05-03 CVE-2023-24594 Resource Exhaustion vulnerability in F5 products
When an SSL profile is configured on a Virtual Server, undisclosed traffic can cause an increase in CPU or SSL accelerator resource utilization.   Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
network
low complexity
f5 CWE-400
5.3
2023-04-28 CVE-2023-28882 Resource Exhaustion vulnerability in Trustwave Modsecurity 3.0.5/3.0.6/3.0.8
Trustwave ModSecurity 3.0.5 through 3.0.8 before 3.0.9 allows a denial of service (worker crash and unresponsiveness) because some inputs cause a segfault in the Transaction class for some configurations.
network
low complexity
trustwave CWE-400
7.5
2023-04-24 CVE-2023-30406 Resource Exhaustion vulnerability in Jerryscript
Jerryscript commit 1a2c047 was discovered to contain a segmentation violation via the component ecma_find_named_property at /base/ecma-helpers.c.
local
low complexity
jerryscript CWE-400
5.5
2023-04-24 CVE-2023-30408 Resource Exhaustion vulnerability in Jerryscript
Jerryscript commit 1a2c047 was discovered to contain a segmentation violation via the component build/bin/jerry.
local
low complexity
jerryscript CWE-400
5.5
2023-04-24 CVE-2023-29479 Resource Exhaustion vulnerability in Ribose RNP
Ribose RNP before 0.16.3 may hang when the input is malformed.
network
low complexity
ribose CWE-400
5.3
2023-04-21 CVE-2023-30798 Resource Exhaustion vulnerability in Encode Starlette
There MultipartParser usage in Encode's Starlette python framework before versions 0.25.0 allows an unauthenticated and remote attacker to specify any number of form fields or files which can cause excessive memory usage resulting in denial of service of the HTTP service.
network
low complexity
encode CWE-400
7.5
2023-04-20 CVE-2023-27652 Resource Exhaustion vulnerability in Egostudiogroup Super Clean 1.1.5/1.1.9
An issue found in Ego Studio SuperClean v.1.1.9 and v.1.1.5 allows an attacker to gain privileges cause a denial of service via the update_info field of the _default_.xml file.
local
low complexity
egostudiogroup CWE-400
5.5