Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2022-06-02 CVE-2022-31018 Resource Exhaustion vulnerability in Lightbend Play Framework
Play Framework is a web framework for Java and Scala.
network
low complexity
lightbend CWE-400
7.5
2022-06-02 CVE-2022-1797 Resource Exhaustion vulnerability in Rockwellautomation products
A malformed Class 3 common industrial protocol message with a cached connection can cause a denial-of-service condition in Rockwell Automation Logix Controllers, resulting in a major nonrecoverable fault.
network
low complexity
rockwellautomation CWE-400
8.6
2022-05-31 CVE-2022-29243 Resource Exhaustion vulnerability in Nextcloud Server
Nextcloud Server is the file server software for Nextcloud, a self-hosted productivity platform.
network
low complexity
nextcloud CWE-400
4.3
2022-05-24 CVE-2021-3629 Resource Exhaustion vulnerability in multiple products
A flaw was found in Undertow.
network
high complexity
redhat netapp CWE-400
5.9
2022-05-20 CVE-2022-27640 Resource Exhaustion vulnerability in Siemens products
A vulnerability has been identified in SIMATIC CP 442-1 RNA (All versions < V1.5.18), SIMATIC CP 443-1 RNA (All versions < V1.5.18).
low complexity
siemens CWE-400
6.5
2022-05-20 CVE-2022-30551 Resource Exhaustion vulnerability in Opcfoundation Ua-Java 20220401
OPC UA Legacy Java Stack 2022-04-01 allows a remote attacker to cause a server to stop processing messages by sending crafted messages that exhaust available resources.
network
low complexity
opcfoundation CWE-400
7.5
2022-05-17 CVE-2022-28191 Resource Exhaustion vulnerability in Nvidia Virtual GPU
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where uncontrolled resource consumption can be triggered by an unprivileged regular user, which may lead to denial of service.
local
low complexity
nvidia CWE-400
5.5
2022-05-12 CVE-2021-33135 Resource Exhaustion vulnerability in Intel Software Guard Extensions
Uncontrolled resource consumption in the Linux kernel drivers for Intel(R) SGX may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-400
5.5
2022-05-12 CVE-2022-1699 Resource Exhaustion vulnerability in Organizr
Uncontrolled Resource Consumption in GitHub repository causefx/organizr prior to 2.1.2000.
network
low complexity
organizr CWE-400
7.5
2022-05-12 CVE-2022-29885 Resource Exhaustion vulnerability in multiple products
The documentation of Apache Tomcat 10.1.0-M1 to 10.1.0-M14, 10.0.0-M1 to 10.0.20, 9.0.13 to 9.0.62 and 8.5.38 to 8.5.78 for the EncryptInterceptor incorrectly stated it enabled Tomcat clustering to run over an untrusted network.
network
low complexity
apache debian oracle CWE-400
7.5