Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2021-09-20 CVE-2021-32839 Resource Exhaustion vulnerability in Sqlparse Project Sqlparse
sqlparse is a non-validating SQL parser module for Python.
network
low complexity
sqlparse-project CWE-400
5.0
2021-09-14 CVE-2021-23042 Resource Exhaustion vulnerability in F5 products
On BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4, 13.1.x before 13.1.4, and 12.1.x before 12.1.6, when an HTTP profile is configured on a virtual server, undisclosed requests can cause a significant increase in system resource utilization.
network
f5 CWE-400
4.3
2021-09-14 CVE-2021-23047 Resource Exhaustion vulnerability in F5 Big-Ip Access Policy Manager
On version 16.x before 16.1.0, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, and all versions of 13.1.x, 12.1.x and 11.6.x, when BIG-IP APM performs Online Certificate Status Protocol (OCSP) verification of a certificate that contains Authority Information Access (AIA), undisclosed requests may cause an increase in memory use.
network
low complexity
f5 CWE-400
5.0
2021-09-14 CVE-2021-23049 Resource Exhaustion vulnerability in F5 products
On BIG-IP version 16.0.x before 16.0.1.2 and 15.1.x before 15.1.3, when the iRules RESOLVER::summarize command is used on a virtual server, undisclosed requests can cause an increase in Traffic Management Microkernel (TMM) memory utilization resulting in an out-of-memory condition and a denial-of-service (DoS).
network
low complexity
f5 CWE-400
5.0
2021-09-01 CVE-2020-9000 Resource Exhaustion vulnerability in Iportalis Control Portal 7.1.13.0
An issue was discovered in iPortalis iCS 7.1.13.0.
network
low complexity
iportalis CWE-400
5.0
2021-08-30 CVE-2021-32832 Resource Exhaustion vulnerability in Rocket.Chat
Rocket.Chat is an open-source fully customizable communications platform developed in JavaScript.
network
low complexity
rocket-chat CWE-400
4.0
2021-08-27 CVE-2021-39171 Resource Exhaustion vulnerability in Passport-Saml Project Passport-Saml
Passport-SAML is a SAML 2.0 authentication provider for Passport, the Node.js authentication library.
network
low complexity
passport-saml-project CWE-400
5.0
2021-08-18 CVE-2021-33580 Resource Exhaustion vulnerability in Apache Roller
User controlled `request.getHeader("Referer")`, `request.getRequestURL()` and `request.getQueryString()` are used to build and run a regex expression.
network
apache CWE-400
4.3
2021-08-11 CVE-2021-0008 Resource Exhaustion vulnerability in Intel Ethernet Controller E810 Firmware 1.3.19/1.4.11/1.5.1.0
Uncontrolled resource consumption in firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.3.0 may allow privileged user to potentially enable denial of service via local access.
local
low complexity
intel CWE-400
2.1
2021-08-10 CVE-2021-25659 Resource Exhaustion vulnerability in Siemens Automation License Manager
A vulnerability has been identified in Automation License Manager 5 (All versions), Automation License Manager 6 (All versions < V6.0 SP9 Update 2).
network
low complexity
siemens CWE-400
5.0