Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2024-10-11 CVE-2024-47497 An Uncontrolled Resource Consumption vulnerability in the http daemon (httpd) of Juniper Networks Junos OS on SRX Series, QFX Series, MX Series and EX Series allows an unauthenticated, network-based attacker to cause Denial-of-Service (DoS). An attacker can send specific HTTPS connection requests to the device, triggering the creation of processes that are not properly terminated.
network
low complexity
CWE-400
7.5
2024-10-02 CVE-2024-20500 Resource Exhaustion vulnerability in Cisco products
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition in the AnyConnect service on an affected device. This vulnerability is due to insufficient resource management when establishing TLS/SSL sessions.
network
low complexity
cisco CWE-400
7.5
2024-10-02 CVE-2024-20502 Resource Exhaustion vulnerability in Cisco products
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to insufficient resource management while establishing SSL VPN sessions.
network
low complexity
cisco CWE-400
7.5
2024-09-30 CVE-2024-8454 Resource Exhaustion vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware
The swctrl service is used to detect and remotely manage PLANET Technology devices.
network
low complexity
planet CWE-400
7.5
2024-08-12 CVE-2024-42481 Resource Exhaustion vulnerability in Skyport Skyportd
Skyport Daemon (skyportd) is the daemon for the Skyport Panel.
network
low complexity
skyport CWE-400
7.5
2024-08-01 CVE-2024-41123 Resource Exhaustion vulnerability in Ruby-Lang Rexml
REXML is an XML toolkit for Ruby.
network
low complexity
ruby-lang CWE-400
7.5
2024-08-01 CVE-2024-41946 Resource Exhaustion vulnerability in Ruby-Lang Rexml
REXML is an XML toolkit for Ruby.
network
low complexity
ruby-lang CWE-400
7.5
2024-07-30 CVE-2024-37299 Resource Exhaustion vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-400
7.5
2024-07-16 CVE-2024-5795 Resource Exhaustion vulnerability in Github Enterprise Server
A Denial of Service vulnerability was identified in GitHub Enterprise Server that allowed an attacker to cause unbounded resource exhaustion by sending a large payload to the Git server.
network
low complexity
github CWE-400
6.5
2024-06-27 CVE-2024-4557 Resource Exhaustion vulnerability in Gitlab
Multiple Denial of Service (DoS) conditions has been discovered in GitLab CE/EE affecting all versions starting from 1.0 prior to 16.11.5, starting from 17.0 prior to 17.0.3, and starting from 17.1 prior to 17.1.1 which allowed an attacker to cause resource exhaustion via banzai pipeline.
network
low complexity
gitlab CWE-400
6.5