Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2020-08-27 CVE-2020-3504 Resource Exhaustion vulnerability in Cisco Firepower Extensible Operating System and Nx-Os
A vulnerability in the local management (local-mgmt) CLI of Cisco UCS Manager Software could allow an authenticated, local attacker to cause a denial of service (DoS) condition on an affected device.
local
low complexity
cisco CWE-400
3.3
2020-08-25 CVE-2020-14522 Resource Exhaustion vulnerability in Softing OPC
Softing Industrial Automation all versions prior to the latest build of version 4.47.0, The affected product is vulnerable to uncontrolled resource consumption, which may allow an attacker to cause a denial-of-service condition.
network
low complexity
softing CWE-400
7.5
2020-08-21 CVE-2020-3976 Resource Exhaustion vulnerability in VMWare Esxi and Vcenter Server
VMware ESXi and vCenter Server contain a partial denial of service vulnerability in their respective authentication services.
network
low complexity
vmware CWE-400
5.3
2020-08-19 CVE-2020-9703 Resource Exhaustion vulnerability in Adobe Acrobat DC
Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier have a stack exhaustion vulnerability.
local
low complexity
adobe CWE-400
5.5
2020-08-19 CVE-2020-9702 Resource Exhaustion vulnerability in Adobe Acrobat DC
Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier have a stack exhaustion vulnerability.
local
low complexity
adobe CWE-400
5.5
2020-08-13 CVE-2020-13281 Resource Exhaustion vulnerability in Gitlab
For GitLab before 13.0.12, 13.1.6, 13.2.3 a denial of service exists in the project import feature
network
low complexity
gitlab CWE-400
6.5
2020-08-13 CVE-2020-13280 Resource Exhaustion vulnerability in Gitlab
For GitLab before 13.0.12, 13.1.6, 13.2.3 a memory exhaustion flaw exists due to excessive logging of an invite email error message.
network
low complexity
gitlab CWE-400
6.5
2020-08-03 CVE-2020-12739 Resource Exhaustion vulnerability in Fanuc products
A denial-of-service vulnerability in the Fanuc i Series CNC (0i-MD and 0i Mate-MD) could allow an unauthenticated, remote attacker to cause an affected CNC to become inaccessible to other devices.
network
low complexity
fanuc CWE-400
5.3
2020-07-30 CVE-2020-8220 Resource Exhaustion vulnerability in multiple products
A denial of service vulnerability exists in Pulse Connect Secure <9.1R8 that allows an authenticated attacker to perform command injection via the administrator web which can cause DOS.
network
low complexity
pulsesecure ivanti CWE-400
6.5
2020-07-30 CVE-2020-8192 Resource Exhaustion vulnerability in Fastify 2.14.1/3.0.0
A denial of service vulnerability exists in Fastify v2.14.1 and v3.0.0-rc.4 that allows a malicious user to trigger resource exhaustion (when the allErrors option is used) with specially crafted schemas.
network
low complexity
fastify CWE-400
6.5