Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2020-03-10 CVE-2019-19281 Resource Exhaustion vulnerability in Siemens products
A vulnerability has been identified in SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl.
network
low complexity
siemens CWE-400
7.5
2020-03-10 CVE-2019-18336 Resource Exhaustion vulnerability in Siemens products
A vulnerability has been identified in SIMATIC S7-300 CPU family (incl.
network
low complexity
siemens CWE-400
7.5
2020-03-10 CVE-2019-13011 Resource Exhaustion vulnerability in Gitlab
An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12.0.2.
network
low complexity
gitlab CWE-400
4.3
2020-03-10 CVE-2019-13007 Resource Exhaustion vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 11.11 through 12.0.2.
network
low complexity
gitlab CWE-400
4.9
2020-03-10 CVE-2019-13003 Resource Exhaustion vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 12.0.3.
network
low complexity
gitlab CWE-400
7.5
2020-03-06 CVE-2020-7212 Resource Exhaustion vulnerability in Python Urllib3
The _encode_invalid_chars function in util/url.py in the urllib3 library 1.25.2 through 1.25.7 for Python allows a denial of service (CPU consumption) because of an inefficient algorithm.
network
low complexity
python CWE-400
7.5
2020-03-05 CVE-2020-6986 Resource Exhaustion vulnerability in Omron PLC CJ1 Firmware and PLC CJ2 Firmware
In all versions of Omron PLC CJ Series, an attacker can send a series of specific data packets within a short period, causing a service error on the PLC Ethernet module, which in turn causes a PLC service denied result.
network
low complexity
omron CWE-400
7.5
2020-03-04 CVE-2020-8661 Resource Exhaustion vulnerability in multiple products
CNCF Envoy through 1.13.0 may consume excessive amounts of memory when responding internally to pipelined requests.
network
low complexity
cncf redhat CWE-400
7.5
2020-03-04 CVE-2020-3190 Resource Exhaustion vulnerability in Cisco IOS XR
A vulnerability in the IPsec packet processor of Cisco IOS XR Software could allow an unauthenticated remote attacker to cause a denial of service (DoS) condition for IPsec sessions to an affected device.
network
low complexity
cisco CWE-400
5.8
2020-03-04 CVE-2020-3181 Resource Exhaustion vulnerability in Cisco Email Security Appliance
A vulnerability in the malware detection functionality in Cisco Advanced Malware Protection (AMP) in Cisco AsyncOS Software for Cisco Email Security Appliances (ESAs) could allow an unauthenticated remote attacker to exhaust resources on an affected device.
network
low complexity
cisco CWE-400
6.5