Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2021-07-19 CVE-2020-20230 Resource Exhaustion vulnerability in Mikrotik Routeros
Mikrotik RouterOs before stable 6.47 suffers from an uncontrolled resource consumption in the sshd process.
network
low complexity
mikrotik CWE-400
6.5
2021-07-19 CVE-2021-32012 Resource Exhaustion vulnerability in multiple products
SheetJS and SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (memory consumption) via a crafted .xlsx document that is mishandled when read by xlsx.js (issue 1 of 2).
local
low complexity
sheetjs-project oracle CWE-400
5.5
2021-07-19 CVE-2021-32013 Resource Exhaustion vulnerability in multiple products
SheetJS and SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (memory consumption) via a crafted .xlsx document that is mishandled when read by xlsx.js (issue 2 of 2).
local
low complexity
sheetjs-project oracle CWE-400
5.5
2021-07-19 CVE-2021-32014 Resource Exhaustion vulnerability in multiple products
SheetJS and SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (CPU consumption) via a crafted .xlsx document that is mishandled when read by xlsx.js.
local
low complexity
sheetjs oracle CWE-400
5.5
2021-07-15 CVE-2021-0285 Resource Exhaustion vulnerability in Juniper Junos
An uncontrolled resource consumption vulnerability in Juniper Networks Junos OS on QFX5000 Series and EX4600 Series switches allows an attacker sending large amounts of legitimate traffic destined to the device to cause Interchassis Control Protocol (ICCP) interruptions, leading to an unstable control connection between the Multi-Chassis Link Aggregation Group (MC-LAG) nodes which can in turn lead to traffic loss.
network
low complexity
juniper CWE-400
7.5
2021-07-15 CVE-2021-0292 Resource Exhaustion vulnerability in Juniper Junos OS Evolved 19.4/20.1/20.2
An Uncontrolled Resource Consumption vulnerability in the ARP daemon (arpd) and Network Discovery Protocol (ndp) process of Juniper Networks Junos OS Evolved allows a malicious attacker on the local network to consume memory resources, ultimately resulting in a Denial of Service (DoS) condition.
low complexity
juniper CWE-400
6.5
2021-07-14 CVE-2021-36716 Resource Exhaustion vulnerability in Segment Is-Email
A ReDoS (regular expression denial of service) flaw was found in the Segment is-email package before 1.0.1 for Node.js.
network
low complexity
segment CWE-400
7.5
2021-07-08 CVE-2020-20217 Resource Exhaustion vulnerability in Mikrotik Routeros
Mikrotik RouterOs before 6.47 (stable tree) suffers from an uncontrolled resource consumption vulnerability in the /nova/bin/route process.
network
low complexity
mikrotik CWE-400
6.5
2021-07-06 CVE-2021-32740 Resource Exhaustion vulnerability in multiple products
Addressable is an alternative implementation to the URI implementation that is part of Ruby's standard library.
network
low complexity
addressable-project fedoraproject CWE-400
7.5
2021-06-29 CVE-2021-34549 Resource Exhaustion vulnerability in Torproject TOR
An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-005.
network
low complexity
torproject CWE-400
7.5