Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2021-02-26 CVE-2020-27223 Resource Exhaustion vulnerability in multiple products
In Eclipse Jetty 9.4.6.v20170531 to 9.4.36.v20210114 (inclusive), 10.0.0, and 11.0.0 when Jetty handles a request containing multiple Accept headers with a large number of “quality” (i.e.
network
low complexity
eclipse apache netapp debian oracle CWE-400
5.3
2021-02-26 CVE-2020-24686 Resource Exhaustion vulnerability in ABB products
The vulnerabilities can be exploited to cause the web visualization component of the PLC to stop and not respond, leading to genuine users losing remote visibility of the PLC state.
network
low complexity
abb CWE-400
7.5
2021-02-26 CVE-2021-21328 Resource Exhaustion vulnerability in Vapor Project Vapor 4.29.4
Vapor is a web framework for Swift.
network
low complexity
vapor-project CWE-400
5.3
2021-02-23 CVE-2020-27782 Resource Exhaustion vulnerability in Redhat products
A flaw was found in the Undertow AJP connector.
network
low complexity
redhat CWE-400
7.5
2021-02-22 CVE-2020-11270 Resource Exhaustion vulnerability in Qualcomm products
Possible denial of service due to RTT responder consistently rejects all FTMR by transmitting FTM1 with failure status in the FTM parameter IE in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
network
low complexity
qualcomm CWE-400
7.5
2021-02-19 CVE-2021-27405 Resource Exhaustion vulnerability in Scrapbox-Parser Project Scrapbox-Parser
A ReDoS (regular expression denial of service) flaw was found in the @progfay/scrapbox-parser package before 6.0.3 for Node.js.
network
low complexity
scrapbox-parser-project CWE-400
7.5
2021-02-18 CVE-2020-28496 Resource Exhaustion vulnerability in Three Project Three
This affects the package three before 0.125.0.
network
low complexity
three-project CWE-400
7.5
2021-02-17 CVE-2020-24504 Resource Exhaustion vulnerability in Intel Ethernet Network Adapter E810 Firmware
Uncontrolled resource consumption in some Intel(R) Ethernet E810 Adapter drivers for Linux before version 1.0.4 may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-400
5.5
2021-02-16 CVE-2020-35559 Resource Exhaustion vulnerability in Mbconnectline Mbconnect24 and Mymbconnect24
An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2.
network
low complexity
mbconnectline CWE-400
4.3
2021-02-15 CVE-2020-4956 Resource Exhaustion vulnerability in IBM Spectrum Protect Operations Center
IBM Spectrum Protect Operations Center 7.1 and 8.1 is vulnerable to a denial of service, caused by a RPC that allows certain cache values to be set and dumped to a file.
high complexity
ibm CWE-400
4.8