Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2020-09-09 CVE-2020-2039 Resource Exhaustion vulnerability in Paloaltonetworks Pan-Os
An uncontrolled resource consumption vulnerability in Palo Alto Networks PAN-OS allows for a remote unauthenticated user to upload temporary files through the management web interface that are not properly deleted after the request is finished.
network
low complexity
paloaltonetworks CWE-400
5.0
2020-09-01 CVE-2019-5645 Resource Exhaustion vulnerability in Rapid7 Metasploit
By sending a specially crafted HTTP GET request to a listening Rapid7 Metasploit HTTP handler, an attacker can register an arbitrary regular expression.
network
low complexity
rapid7 CWE-400
5.0
2020-08-27 CVE-2020-3504 Resource Exhaustion vulnerability in Cisco Firepower Extensible Operating System and Nx-Os
A vulnerability in the local management (local-mgmt) CLI of Cisco UCS Manager Software could allow an authenticated, local attacker to cause a denial of service (DoS) condition on an affected device.
local
low complexity
cisco CWE-400
3.3
2020-08-26 CVE-2020-5921 Resource Exhaustion vulnerability in F5 products
in BIG-IP versions 15.1.0-15.1.0.4, 15.0.0-15.0.1.3, 14.1.0-14.1.2.6, 13.1.0-13.1.3.4, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.2, Syn flood causes large number of MCPD context messages destined to secondary blades consuming memory leading to MCPD failure.
network
low complexity
f5 CWE-400
5.0
2020-08-26 CVE-2020-5918 Resource Exhaustion vulnerability in F5 products
In BIG-IP versions 15.1.0-15.1.0.4, 15.0.0-15.0.1.3, 14.1.0-14.1.2.3, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, the Traffic Management Microkernel (TMM) may stop responding when processing Stream Control Transmission Protocol (SCTP) traffic when traffic volume is high.
network
low complexity
f5 CWE-400
5.0
2020-08-25 CVE-2020-14522 Resource Exhaustion vulnerability in Softing OPC
Softing Industrial Automation all versions prior to the latest build of version 4.47.0, The affected product is vulnerable to uncontrolled resource consumption, which may allow an attacker to cause a denial-of-service condition.
network
low complexity
softing CWE-400
5.0
2020-08-21 CVE-2020-3976 Resource Exhaustion vulnerability in VMWare Cloud Foundation and Vcenter Server
VMware ESXi and vCenter Server contain a partial denial of service vulnerability in their respective authentication services.
network
low complexity
vmware CWE-400
5.0
2020-08-19 CVE-2020-9703 Resource Exhaustion vulnerability in Adobe Acrobat DC
Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier have a stack exhaustion vulnerability.
network
adobe CWE-400
4.3
2020-08-19 CVE-2020-9702 Resource Exhaustion vulnerability in Adobe Acrobat DC
Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier have a stack exhaustion vulnerability.
network
adobe CWE-400
4.3
2020-08-14 CVE-2019-19643 Resource Exhaustion vulnerability in ISE Smart Connect KNX Vaillant 1.2.839
ise smart connect KNX Vaillant 1.2.839 contain a Denial of Service.
network
low complexity
ise CWE-400
5.0