Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2021-07-14 CVE-2021-36716 Resource Exhaustion vulnerability in Segment Is-Email
A ReDoS (regular expression denial of service) flaw was found in the Segment is-email package before 1.0.1 for Node.js.
network
low complexity
segment CWE-400
7.5
2021-07-08 CVE-2020-20217 Resource Exhaustion vulnerability in Mikrotik Routeros
Mikrotik RouterOs before 6.47 (stable tree) suffers from an uncontrolled resource consumption vulnerability in the /nova/bin/route process.
network
low complexity
mikrotik CWE-400
6.5
2021-06-29 CVE-2021-34549 Resource Exhaustion vulnerability in Torproject TOR
An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-005.
network
low complexity
torproject CWE-400
7.5
2021-06-29 CVE-2021-33503 Resource Exhaustion vulnerability in multiple products
An issue was discovered in urllib3 before 1.26.5.
network
low complexity
python fedoraproject oracle CWE-400
7.5
2021-06-28 CVE-2021-32722 Resource Exhaustion vulnerability in Miraheze Globalnewfiles
GlobalNewFiles is a mediawiki extension.
network
low complexity
miraheze CWE-400
6.5
2021-06-18 CVE-2021-33824 Resource Exhaustion vulnerability in Moxa Mgate Mb3180 Firmware 2.1
An issue was discovered on MOXA Mgate MB3180 Version 2.1 Build 18113012.
network
low complexity
moxa CWE-400
7.5
2021-06-18 CVE-2021-33818 Resource Exhaustion vulnerability in UI Camera G3 Flex Firmware Uvc.V4.30.0.67
An issue was discovered in UniFi Protect G3 FLEX Camera Version UVC.v4.30.0.67.
network
low complexity
ui CWE-400
7.5
2021-06-18 CVE-2021-33822 Resource Exhaustion vulnerability in Sing4G 4Gee Router Hh70Vb Firmware Hh70E102.0022
An issue was discovered on 4GEE ROUTER HH70VB Version HH70_E1_02.00_22.
network
low complexity
sing4g CWE-400
7.5
2021-06-16 CVE-2020-8299 Resource Exhaustion vulnerability in Citrix products
Citrix ADC and Citrix/NetScaler Gateway 13.0 before 13.0-76.29, 12.1-61.18, 11.1-65.20, Citrix ADC 12.1-FIPS before 12.1-55.238, and Citrix SD-WAN WANOP Edition before 11.4.0, 11.3.2, 11.3.1a, 11.2.3a, 11.1.2c, 10.2.9a suffers from uncontrolled resource consumption by way of a network-based denial-of-service from within the same Layer 2 network segment.
low complexity
citrix CWE-400
6.5
2021-06-11 CVE-2021-20591 Resource Exhaustion vulnerability in Mitsubishielectric products
Uncontrolled Resource Consumption vulnerability in Mitsubishi Electric MELSEC iQ-R series CPU modules (R00/01/02CPU all versions, R04/08/16/32/120(EN)CPU all versions, R08/16/32/120SFCPU all versions, R08/16/32/120PCPU all versions, R08/16/32/120PSFCPU all versions) allows a remote unauthenticated attacker to prevent legitimate clients from connecting to the MELSOFT transmission port (TCP/IP) by not closing a connection properly, which may lead to a denial of service (DoS) condition.
network
low complexity
mitsubishielectric CWE-400
7.5