Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2020-02-11 CVE-2019-13926 Resource Exhaustion vulnerability in Siemens products
A vulnerability has been identified in SCALANCE S602 (All versions >= V3.0 and < V4.1), SCALANCE S612 (All versions >= V3.0 and < V4.1), SCALANCE S623 (All versions >= V3.0 and < V4.1), SCALANCE S627-2M (All versions >= V3.0 and < V4.1).
network
low complexity
siemens CWE-400
7.8
2020-02-11 CVE-2019-13925 Resource Exhaustion vulnerability in Siemens products
A vulnerability has been identified in SCALANCE S602 (All versions >= V3.0 and < V4.1), SCALANCE S612 (All versions >= V3.0 and < V4.1), SCALANCE S623 (All versions >= V3.0 and < V4.1), SCALANCE S627-2M (All versions >= V3.0 and < V4.1).
network
low complexity
siemens CWE-400
7.5
2020-02-07 CVE-2020-1700 Resource Exhaustion vulnerability in multiple products
A flaw was found in the way the Ceph RGW Beast front-end handles unexpected disconnects.
network
low complexity
ceph redhat opensuse canonical CWE-400
6.5
2020-02-06 CVE-2020-7920 Resource Exhaustion vulnerability in Percona Monitoring and Management 2.2.0
pmm-server in Percona Monitoring and Management (PMM) 2.2.x before 2.2.1 allows unauthenticated denial of service.
network
low complexity
percona CWE-400
7.8
2020-02-06 CVE-2016-1544 Resource Exhaustion vulnerability in multiple products
nghttp2 before 1.7.1 allows remote attackers to cause a denial of service (memory exhaustion).
local
low complexity
nghttp2 fedoraproject CWE-400
2.1
2020-02-04 CVE-2020-8123 Resource Exhaustion vulnerability in Strapi
A denial of service exists in strapi v3.0.0-beta.18.3 and earlier that can be abused in the admin console using admin rights can lead to arbitrary restart of the application.
network
low complexity
strapi CWE-400
4.0
2020-02-04 CVE-2019-9674 Resource Exhaustion vulnerability in multiple products
Lib/zipfile.py in Python through 3.7.2 allows remote attackers to cause a denial of service (resource consumption) via a ZIP bomb.
network
low complexity
python canonical netapp CWE-400
7.5
2020-02-04 CVE-2020-5236 Resource Exhaustion vulnerability in Agendaless Waitress 1.4.2
Waitress version 1.4.2 allows a DOS attack When waitress receives a header that contains invalid characters.
network
low complexity
agendaless CWE-400
6.8
2020-02-02 CVE-2019-20446 Resource Exhaustion vulnerability in multiple products
In xml.rs in GNOME librsvg before 2.46.2, a crafted SVG file with nested patterns can cause denial of service when passed to the library for processing.
6.5
2020-01-31 CVE-2020-7219 Resource Exhaustion vulnerability in Hashicorp Consul
HashiCorp Consul and Consul Enterprise up to 1.6.2 HTTP/RPC services allowed unbounded resource usage, and were susceptible to unauthenticated denial of service.
network
low complexity
hashicorp CWE-400
5.0