Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2022-07-06 CVE-2022-30591 Resource Exhaustion vulnerability in Quic-Go Project Quic-Go
quic-go through 0.27.0 allows remote attackers to cause a denial of service (CPU consumption) via a Slowloris variant in which incomplete QUIC or HTTP/3 requests are sent.
network
low complexity
quic-go-project CWE-400
7.5
2022-07-01 CVE-2014-3648 Resource Exhaustion vulnerability in Redhat Jboss Aerogear 1.0.0
The simplepush server iterates through the application installations and pushes a notification to the server provided by deviceToken.
network
low complexity
redhat CWE-400
7.5
2022-06-27 CVE-2022-26477 Resource Exhaustion vulnerability in Apache Systemds
The Security Team noticed that the termination condition of the for loop in the readExternal method is a controllable variable, which, if tampered with, may lead to CPU exhaustion.
network
low complexity
apache CWE-400
7.5
2022-06-24 CVE-2022-31803 Resource Exhaustion vulnerability in Codesys Gateway
In CODESYS Gateway Server V2 an insufficient check for the activity of TCP client connections allows an unauthenticated attacker to consume all available TCP connections and prevent legitimate users or clients from establishing a new connection to the CODESYS Gateway Server V2.
network
low complexity
codesys CWE-400
5.3
2022-06-16 CVE-2022-29864 Resource Exhaustion vulnerability in Opcfoundation UA .Net Standard Stack
OPC UA .NET Standard Stack 1.04.368 allows a remote attacker to cause a server to crash via a large number of messages that trigger Uncontrolled Resource Consumption.
network
low complexity
opcfoundation CWE-400
7.5
2022-06-16 CVE-2022-29866 Resource Exhaustion vulnerability in Opcfoundation UA .Net Standard Stack
OPC UA .NET Standard Stack 1.04.368 allows a remote attacker to exhaust the memory resources of a server via a crafted request that triggers Uncontrolled Resource Consumption.
network
low complexity
opcfoundation CWE-400
7.5
2022-06-09 CVE-2022-31030 Resource Exhaustion vulnerability in multiple products
containerd is an open source container runtime.
5.5
2022-06-07 CVE-2022-31028 Resource Exhaustion vulnerability in Minio
MinIO is a multi-cloud object storage solution.
network
low complexity
minio CWE-400
7.5
2022-06-02 CVE-2022-22556 Resource Exhaustion vulnerability in Dell Powerstoreos
Dell PowerStore contains an Uncontrolled Resource Consumption Vulnerability in PowerStore User Interface.
network
low complexity
dell CWE-400
7.5
2022-06-02 CVE-2022-1982 Resource Exhaustion vulnerability in Mattermost Server
Uncontrolled resource consumption in Mattermost version 6.6.0 and earlier allows an authenticated attacker to crash the server via a crafted SVG attachment on a post.
network
low complexity
mattermost CWE-400
6.5