Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2018-11-28 CVE-2018-16853 Resource Exhaustion vulnerability in Samba
Samba from version 4.7.0 has a vulnerability that allows a user in a Samba AD domain to crash the KDC when Samba is built in the non-default MIT Kerberos configuration.
network
high complexity
samba CWE-400
5.9
2018-11-15 CVE-2018-0700 Resource Exhaustion vulnerability in Hyuki Yukiwiki
YukiWiki 2.1.3 and earlier does not process a particular request properly that may allow consumption of large amounts of CPU and memory resources and may result in causing a denial of service condition.
network
low complexity
hyuki CWE-400
7.5
2018-11-13 CVE-2018-16470 Resource Exhaustion vulnerability in Rack Project Rack 2.0.4/2.0.5
There is a possible DoS vulnerability in the multipart parser in Rack before 2.0.6.
network
low complexity
rack-project CWE-400
7.5
2018-11-13 CVE-2018-15772 Resource Exhaustion vulnerability in Dell products
Dell EMC RecoverPoint versions prior to 5.1.2.1 and RecoverPoint for VMs versions prior to 5.2.0.2 contain an uncontrolled resource consumption vulnerability.
local
low complexity
dell CWE-400
7.1
2018-11-12 CVE-2018-1786 Resource Exhaustion vulnerability in IBM products
IBM Spectrum Protect 7.1 and 8.1 dsmc and dsmcad processes incorrectly accumulate TCP/IP sockets in a CLOSE_WAIT state.
network
low complexity
ibm CWE-400
7.5
2018-11-08 CVE-2018-15443 Resource Exhaustion vulnerability in Cisco Firepower System Software
A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass a configured Intrusion Prevention System (IPS) rule that inspects certain types of TCP traffic.
network
low complexity
cisco CWE-400
7.5
2018-11-08 CVE-2018-15437 Resource Exhaustion vulnerability in Cisco products
A vulnerability in the system scanning component of Cisco Immunet and Cisco Advanced Malware Protection (AMP) for Endpoints running on Microsoft Windows could allow a local attacker to disable the scanning functionality of the product.
local
low complexity
cisco CWE-400
5.5
2018-11-02 CVE-2018-3935 Resource Exhaustion vulnerability in Yitechnology YI Home and YI Home Camera Firmware
An exploitable code execution vulnerability exists in the UDP network functionality of Yi Home Camera 27US 1.8.7.0D.
network
low complexity
yitechnology CWE-400
7.5
2018-10-31 CVE-2018-15325 Resource Exhaustion vulnerability in F5 products
In BIG-IP 14.0.0-14.0.0.2 or 13.0.0-13.1.1.1, iControl and TMSH usage by authenticated users may leak a small amount of memory when executing commands
network
low complexity
f5 CWE-400
4.3
2018-10-31 CVE-2018-18854 Resource Exhaustion vulnerability in Lightbend Spray-Json
Lightbend Spray spray-json through 1.3.4 allows remote attackers to cause a denial of service (resource consumption) because of Algorithmic Complexity during the parsing of many JSON object fields (with keys that have the same hash code).
network
low complexity
lightbend CWE-400
7.5