Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2023-03-01 CVE-2023-20014 Resource Exhaustion vulnerability in Cisco Nexus Dashboard
A vulnerability in the DNS functionality of Cisco Nexus Dashboard Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. This vulnerability is due to the improper processing of DNS requests.
network
low complexity
cisco CWE-400
7.5
2023-02-28 CVE-2022-41724 Resource Exhaustion vulnerability in Golang GO
Large handshake records may cause panics in crypto/tls.
network
low complexity
golang CWE-400
7.5
2023-02-28 CVE-2022-20455 Resource Exhaustion vulnerability in Google Android
In addAutomaticZenRule of ZenModeHelper.java, there is a possible persistent denial of service due to resource exhaustion.
local
low complexity
google CWE-400
5.5
2023-02-28 CVE-2023-23689 Resource Exhaustion vulnerability in Dell products
Dell PowerScale nodes A200, A2000, H400, H500, H600, H5600, F800, F810 integrated hardware management software contains an uncontrolled resource consumption vulnerability.
network
low complexity
dell CWE-400
7.5
2023-02-27 CVE-2023-23524 Resource Exhaustion vulnerability in Apple products
A denial-of-service issue was addressed with improved input validation.
network
low complexity
apple CWE-400
7.5
2023-02-25 CVE-2023-26104 Resource Exhaustion vulnerability in Lite-Web-Server Project Lite-Web-Server
All versions of the package lite-web-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes control characters that the decodeURI() function is unable to parse.
network
low complexity
lite-web-server-project CWE-400
7.5
2023-02-25 CVE-2023-25816 Resource Exhaustion vulnerability in Nextcloud Server 25.0.0/25.0.2
Nextcloud is an Open Source private cloud software.
network
low complexity
nextcloud CWE-400
6.5
2023-02-23 CVE-2023-23296 Resource Exhaustion vulnerability in Korenix products
Korenix JetWave 4200 Series 1.3.0 and JetWave 3200 Series 1.6.0 are vulnerable to Denial of Service via /goform/formDefault.
network
low complexity
korenix CWE-400
6.5
2023-02-21 CVE-2023-23009 Resource Exhaustion vulnerability in multiple products
Libreswan 4.9 allows remote attackers to cause a denial of service (assert failure and daemon restart) via crafted TS payload with an incorrect selector length.
network
low complexity
libreswan debian CWE-400
6.5
2023-02-16 CVE-2023-0662 Resource Exhaustion vulnerability in PHP
In PHP 8.0.X before 8.0.28, 8.1.X before 8.1.16 and 8.2.X before 8.2.3, excessive number of parts in HTTP form upload can cause high resource consumption and excessive number of log entries.
network
low complexity
php CWE-400
7.5