Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2020-10-30 CVE-2020-7760 Resource Exhaustion vulnerability in multiple products
This affects the package codemirror before 5.58.2; the package org.apache.marmotta.webjars:codemirror before 5.58.2.
network
low complexity
codemirror oracle CWE-400
7.5
2020-10-29 CVE-2020-5936 Resource Exhaustion vulnerability in F5 Big-Ip Local Traffic Manager
On BIG-IP LTM 15.1.0-15.1.0.5, 14.1.0-14.1.2.7, 13.1.0-13.1.3.4, and 12.1.0-12.1.5.1, the Traffic Management Microkernel (TMM) process may consume excessive resources when processing SSL traffic and client authentication are enabled on the client SSL profile.
network
low complexity
f5 CWE-400
7.5
2020-10-27 CVE-2019-8774 Resource Exhaustion vulnerability in Apple Iphone OS
A resource exhaustion issue was addressed with improved input validation.
local
low complexity
apple CWE-400
5.5
2020-10-27 CVE-2018-4474 Resource Exhaustion vulnerability in Apple products
A memory consumption issue was addressed with improved memory handling.
network
low complexity
apple CWE-400
7.5
2020-10-27 CVE-2018-4381 Resource Exhaustion vulnerability in Apple Iphone OS
A resource exhaustion issue was addressed with improved input validation.
local
low complexity
apple CWE-400
5.5
2020-10-27 CVE-2020-7753 Resource Exhaustion vulnerability in Trim Project Trim
All versions of package trim are vulnerable to Regular Expression Denial of Service (ReDoS) via trim().
network
low complexity
trim-project CWE-400
7.5
2020-10-21 CVE-2020-3563 Resource Exhaustion vulnerability in Cisco Firepower Threat Defense
A vulnerability in the packet processing functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-400
8.6
2020-10-21 CVE-2020-3554 Resource Exhaustion vulnerability in Cisco products
A vulnerability in the TCP packet processing of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-400
7.5
2020-10-21 CVE-2020-3533 Resource Exhaustion vulnerability in Cisco Firepower Threat Defense
A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to restart unexpectedly.
network
low complexity
cisco CWE-400
7.5
2020-10-21 CVE-2020-3529 Resource Exhaustion vulnerability in Cisco products
A vulnerability in the SSL VPN negotiation process for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a reload of an affected device, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-400
7.5