Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2021-01-27 CVE-2021-25225 Resource Exhaustion vulnerability in Trendmicro Serverprotect 3.0
A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local attacker to craft specific files that can cause a denial-of-service on the affected product.
local
low complexity
trendmicro CWE-400
5.5
2021-01-27 CVE-2021-25224 Resource Exhaustion vulnerability in Trendmicro Serverprotect 3.0
A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local attacker to craft specific files that can cause a denial-of-service on the affected product.
local
low complexity
trendmicro CWE-400
5.5
2021-01-26 CVE-2020-27295 Resource Exhaustion vulnerability in Honeywell OPC UA Tunneller
The affected product has uncontrolled resource consumption issues, which may allow an attacker to cause a denial-of-service condition on the OPC UA Tunneller (versions prior to 6.3.0.8233).
network
low complexity
honeywell CWE-400
7.5
2021-01-26 CVE-2020-8295 Resource Exhaustion vulnerability in Nextcloud Server
A wrong check in Nextcloud Server 19 and prior allowed to perform a denial of service attack when resetting the password for a user.
network
low complexity
nextcloud CWE-400
7.5
2021-01-26 CVE-2020-8293 Resource Exhaustion vulnerability in Nextcloud Server
A missing input validation in Nextcloud Server before 20.0.2, 19.0.5, 18.0.11 allows users to store unlimited data in workflow rules causing load and potential DDoS on later interactions and usage with those rules.
network
low complexity
nextcloud CWE-400
6.5
2021-01-22 CVE-2020-4766 Resource Exhaustion vulnerability in IBM MQ Internet Pass-Thru 2.1/9.2
IBM MQ Internet Pass-Thru 2.1 and 9.2 could allow a remote user to cause a denial of service by sending malformed MQ data requests which would consume all available resources.
network
low complexity
ibm CWE-400
7.5
2021-01-15 CVE-2021-22168 Resource Exhaustion vulnerability in Gitlab
A regular expression denial of service issue has been discovered in NuGet API affecting all versions of GitLab starting from version 12.8.
network
low complexity
gitlab CWE-400
6.5
2021-01-15 CVE-2021-22166 Resource Exhaustion vulnerability in Gitlab 13.7.0/13.7.1
An attacker could cause a Prometheus denial of service in GitLab 13.7+ by sending an HTTP request with a malformed method
network
low complexity
gitlab CWE-400
7.5
2021-01-13 CVE-2020-9203 Resource Exhaustion vulnerability in Huawei P30 Firmware
There is a resource management errors vulnerability in Huawei P30.
local
low complexity
huawei CWE-400
3.3
2021-01-08 CVE-2020-36048 Resource Exhaustion vulnerability in Socket Engine.Io
Engine.IO before 4.0.0 allows attackers to cause a denial of service (resource consumption) via a POST request to the long polling transport.
network
low complexity
socket CWE-400
7.5