Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2020-01-13 CVE-2019-20146 Resource Exhaustion vulnerability in Gitlab
An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 11.0 through 12.6.
network
low complexity
gitlab CWE-400
5.3
2020-01-09 CVE-2014-3447 Resource Exhaustion vulnerability in BSS Continuity CMS Project BSS Continuty CMS 4.2.22640.0
BSS Continuity CMS 4.2.22640.0 has a Remote Denial Of Service vulnerability
network
low complexity
bss-continuity-cms-project CWE-400
7.5
2020-01-09 CVE-2014-3211 Resource Exhaustion vulnerability in Publify Project Publify
Publify before 8.0.1 is vulnerable to a Denial of Service attack
network
low complexity
publify-project CWE-400
7.5
2020-01-02 CVE-2019-10775 Resource Exhaustion vulnerability in Ecstatic Project Ecstatic
ecstatic have a denial of service vulnerability.
network
low complexity
ecstatic-project CWE-400
7.5
2019-12-31 CVE-2019-20176 Resource Exhaustion vulnerability in multiple products
In Pure-FTPd 1.0.49, a stack exhaustion issue was discovered in the listdir function in ls.c.
network
low complexity
pureftpd fedoraproject CWE-400
7.5
2019-12-30 CVE-2012-5645 Resource Exhaustion vulnerability in multiple products
A denial of service flaw was found in the way the server component of Freeciv before 2.3.4 processed certain packets.
network
low complexity
freeciv fedoraproject CWE-400
7.5
2019-12-23 CVE-2019-6683 Resource Exhaustion vulnerability in F5 products
On versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, BIG-IP virtual servers with Loose Initiation enabled on a FastL4 profile may be subject to excessive flow usage under undisclosed conditions.
network
low complexity
f5 CWE-400
7.5
2019-12-23 CVE-2019-6682 Resource Exhaustion vulnerability in F5 Big-Ip Application Security Manager
On versions 15.0.0-15.0.1.1, 14.0.0-14.1.2.2, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, the BIG-IP ASM system may consume excessive resources when processing certain types of HTTP responses from the origin web server.
network
low complexity
f5 CWE-400
7.5
2019-12-22 CVE-2019-19922 Resource Exhaustion vulnerability in multiple products
kernel/sched/fair.c in the Linux kernel before 5.3.9, when cpu.cfs_quota_us is used (e.g., with Kubernetes), allows attackers to cause a denial of service against non-cpu-bound applications by generating a workload that triggers unwanted slice expiration, aka CID-de53fd7aedb1.
local
low complexity
linux debian canonical oracle netapp CWE-400
5.5
2019-12-20 CVE-2019-15584 Resource Exhaustion vulnerability in Gitlab
A denial of service exists in gitlab <v12.3.2, <v12.2.6, and <v12.1.10 that would let an attacker bypass input validation in markdown fields take down the affected page.
network
low complexity
gitlab CWE-400
6.5