Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2024-01-02 CVE-2023-50020 Resource Exhaustion vulnerability in Open5Gs 2.6.6
An issue was discovered in open5gs v2.6.6.
network
low complexity
open5gs CWE-400
7.5
2023-12-20 CVE-2023-50707 Resource Exhaustion vulnerability in Efacec BCU 500 Firmware 4.07
Through the exploitation of active user sessions, an attacker could send custom requests to cause a denial-of-service condition on the device.
network
low complexity
efacec CWE-400
7.5
2023-12-19 CVE-2023-46104 Resource Exhaustion vulnerability in Apache Superset
Uncontrolled resource consumption can be triggered by authenticated attacker that uploads a malicious ZIP to import database, dashboards or datasets.   This vulnerability exists in Apache Superset versions up to and including 2.1.2 and versions 3.0.0, 3.0.1.
network
low complexity
apache CWE-400
6.5
2023-12-12 CVE-2023-6193 Resource Exhaustion vulnerability in Cloudflare Quiche
quiche v.
network
low complexity
cloudflare CWE-400
5.3
2023-12-12 CVE-2023-41963 Resource Exhaustion vulnerability in Jtekt products
Denial-of-service (DoS) vulnerability exists in FTP service of HMI GC-A2 series.
network
low complexity
jtekt CWE-400
7.5
2023-12-12 CVE-2023-49140 Resource Exhaustion vulnerability in Jtekt products
Denial-of-service (DoS) vulnerability exists in commplex-link service of HMI GC-A2 series.
network
low complexity
jtekt CWE-400
7.5
2023-12-12 CVE-2023-49143 Resource Exhaustion vulnerability in Jtekt products
Denial-of-service (DoS) vulnerability exists in rfe service of HMI GC-A2 series.
network
low complexity
jtekt CWE-400
7.5
2023-12-12 CVE-2023-49713 Resource Exhaustion vulnerability in Jtekt products
Denial-of-service (DoS) vulnerability exists in NetBIOS service of HMI GC-A2 series.
network
low complexity
jtekt CWE-400
7.5
2023-12-12 CVE-2023-45847 Resource Exhaustion vulnerability in Mattermost Server
Mattermost fails to to check the length when setting the title in a run checklist in Playbooks, allowing an attacker to send a specially crafted request and crash the Playbooks plugin
network
low complexity
mattermost CWE-400
7.5
2023-12-12 CVE-2023-49809 Resource Exhaustion vulnerability in Mattermost Server
Mattermost fails to handle a null request body in the /add endpoint, allowing a simple member to send a request with null request body to that endpoint and make it crash.
network
low complexity
mattermost CWE-400
6.5