Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2021-04-22 CVE-2021-0229 Resource Exhaustion vulnerability in Juniper Junos 16.1/16.2/17.1
An uncontrolled resource consumption vulnerability in Message Queue Telemetry Transport (MQTT) server of Juniper Networks Junos OS allows an attacker to cause MQTT server to crash and restart leading to a Denial of Service (DoS) by sending a stream of specific packets.
network
low complexity
juniper CWE-400
5.0
2021-04-20 CVE-2021-30464 Resource Exhaustion vulnerability in Omicronenergy Stationguard
OMICRON StationGuard before 1.10 allows remote attackers to cause a denial of service (connectivity outage) via crafted tcp/20499 packets to the CTRL Ethernet port.
network
low complexity
omicronenergy CWE-400
5.0
2021-04-02 CVE-2021-21529 Resource Exhaustion vulnerability in Dell System Update
Dell System Update (DSU) 1.9 and earlier versions contain a denial of service vulnerability.
local
low complexity
dell CWE-400
4.9
2021-04-01 CVE-2021-22177 Resource Exhaustion vulnerability in Gitlab
Potential DoS was identified in gitlab-shell in GitLab CE/EE version 12.6.0 or above, which allows an attacker to spike the server resource utilization via gitlab-shell command.
network
low complexity
gitlab CWE-400
4.0
2021-03-31 CVE-2021-3479 Resource Exhaustion vulnerability in multiple products
There's a flaw in OpenEXR's Scanline API functionality in versions before 3.0.0-beta.
local
low complexity
openexr debian CWE-400
5.5
2021-03-31 CVE-2021-3478 Resource Exhaustion vulnerability in multiple products
There's a flaw in OpenEXR's scanline input file functionality in versions before 3.0.0-beta.
local
low complexity
openexr debian CWE-400
5.5
2021-03-30 CVE-2018-1109 Resource Exhaustion vulnerability in Braces Project Braces
A vulnerability was found in Braces versions prior to 2.3.1.
network
low complexity
braces-project CWE-400
5.3
2021-03-30 CVE-2018-1107 Resource Exhaustion vulnerability in Is-My-Json-Valid Project Is-My-Json-Valid
It was discovered that the is-my-json-valid JavaScript library used an inefficient regular expression to validate JSON fields defined to have email format.
network
low complexity
is-my-json-valid-project CWE-400
5.0
2021-03-24 CVE-2021-1460 Resource Exhaustion vulnerability in Cisco products
A vulnerability in the Cisco IOx Application Framework of Cisco 809 Industrial Integrated Services Routers (Industrial ISRs), Cisco 829 Industrial ISRs, Cisco CGR 1000 Compute Module, and Cisco IC3000 Industrial Compute Gateway could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-400
7.5
2021-03-23 CVE-2021-21348 Resource Exhaustion vulnerability in multiple products
XStream is a Java library to serialize objects to XML and back again.
7.5