Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2022-04-12 CVE-2022-27194 Resource Exhaustion vulnerability in Siemens products
A vulnerability has been identified in SIMATIC PCS neo (Administration Console) (All versions < V3.1 SP1), SINETPLAN (All versions), TIA Portal (V15, V15.1, V16 and V17).
network
low complexity
siemens CWE-400
7.8
2022-04-11 CVE-2022-24839 Resource Exhaustion vulnerability in multiple products
org.cyberneko.html is an html parser written in Java.
network
low complexity
nekohtml-project oracle CWE-400
7.5
2022-04-04 CVE-2022-1099 Resource Exhaustion vulnerability in Gitlab
Adding a very large number of tags to a runner in GitLab CE/EE affecting all versions prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14.9.2 allows an attacker to impact the performance of GitLab
network
low complexity
gitlab CWE-400
4.0
2022-04-01 CVE-2021-32503 Resource Exhaustion vulnerability in Sick Ftmg Firmware 2.8
Unauthenticated users can access sensitive web URLs through GET request, which should be restricted to maintenance users only.
network
low complexity
sick CWE-400
4.9
2022-04-01 CVE-2022-0489 Resource Exhaustion vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting with 8.15 .
network
gitlab CWE-400
3.5
2022-03-28 CVE-2022-0488 Resource Exhaustion vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting with version 8.10.
network
low complexity
gitlab CWE-400
4.0
2022-03-25 CVE-2021-22100 Resource Exhaustion vulnerability in Cloudfoundry Capi-Release
In cloud foundry CAPI versions prior to 1.122, a denial-of-service attack in which a developer can push a service broker that (accidentally or maliciously) causes CC instances to timeout and fail is possible.
network
low complexity
cloudfoundry CWE-400
5.0
2022-03-11 CVE-2022-22145 Resource Exhaustion vulnerability in Yokogawa products
CAMS for HIS Log Server contained in the following Yokogawa Electric products is vulnerable to uncontrolled resource consumption.
network
yokogawa CWE-400
4.9
2022-03-10 CVE-2022-24726 Resource Exhaustion vulnerability in Istio
Istio is an open platform to connect, manage, and secure microservices.
network
low complexity
istio CWE-400
5.0
2022-03-10 CVE-2021-3733 Resource Exhaustion vulnerability in multiple products
There's a flaw in urllib's AbstractBasicAuthHandler class.
network
low complexity
python redhat fedoraproject netapp CWE-400
6.5