Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2020-10-21 CVE-2020-3528 Resource Exhaustion vulnerability in Cisco Firepower Threat Defense
A vulnerability in the OSPF Version 2 (OSPFv2) implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-400
7.5
2020-10-21 CVE-2020-3499 Resource Exhaustion vulnerability in Cisco Firepower Management Center
A vulnerability in the licensing service of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition.The vulnerability is due to improper handling of system resource values by the affected system.
network
low complexity
cisco CWE-400
8.6
2020-10-15 CVE-2020-11645 Resource Exhaustion vulnerability in Br-Automation products
A denial of service vulnerability in B&R GateManager 4260 and 9250 versions <9.0.20262 and GateManager 8250 versions <9.2.620236042 allows authenticated users to limit availability of GateManager instances.
network
low complexity
br-automation CWE-400
6.5
2020-10-07 CVE-2020-26164 Resource Exhaustion vulnerability in multiple products
In kdeconnect-kde (aka KDE Connect) before 20.08.2, an attacker on the local network could send crafted packets that trigger use of large amounts of CPU, memory, or network connection slots, aka a Denial of Service attack.
local
low complexity
kde opensuse CWE-400
5.5
2020-10-06 CVE-2020-13333 Resource Exhaustion vulnerability in Gitlab 13.1.0/13.2.0/13.3.0
A potential DOS vulnerability was discovered in GitLab versions 13.1, 13.2 and 13.3.
network
low complexity
gitlab CWE-400
4.3
2020-10-06 CVE-2020-1903 Resource Exhaustion vulnerability in Whatsapp and Whatsapp Business
An issue when unzipping docx, pptx, and xlsx documents in WhatsApp for iOS prior to v2.20.61 and WhatsApp Business for iOS prior to v2.20.61 could have resulted in an out-of-memory denial of service.
local
low complexity
whatsapp CWE-400
5.5
2020-10-06 CVE-2020-1901 Resource Exhaustion vulnerability in Whatsapp
Receiving a large text message containing URLs in WhatsApp for iOS prior to v2.20.91.4 could have caused the application to freeze while processing the message.
network
low complexity
whatsapp CWE-400
5.3
2020-09-30 CVE-2019-20922 Resource Exhaustion vulnerability in Handlebarsjs Handlebars
Handlebars before 4.4.5 allows Regular Expression Denial of Service (ReDoS) because of eager matching.
network
low complexity
handlebarsjs CWE-400
7.5
2020-09-25 CVE-2018-10432 Resource Exhaustion vulnerability in Pexip Infinity
Pexip Infinity before 18 allows Remote Denial of Service (TLS handshakes in RTMP).
network
low complexity
pexip CWE-400
7.5
2020-09-25 CVE-2018-10585 Resource Exhaustion vulnerability in Pexip Infinity
Pexip Infinity before 18 allows remote Denial of Service (XML parsing).
network
low complexity
pexip CWE-400
7.5