Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2023-11-01 CVE-2023-46278 Resource Exhaustion vulnerability in Cybozu Remote Service 4.1.0
Uncontrolled resource consumption vulnerability in Cybozu Remote Service 4.1.0 to 4.1.1 allows a remote authenticated attacker to consume huge storage space or cause significantly delayed communication.
network
low complexity
cybozu CWE-400
6.5
2023-10-31 CVE-2023-39610 Resource Exhaustion vulnerability in Tp-Link Tapo C100 Firmware 1.1.15
An issue in TP-Link Tapo C100 v1.1.15 Build 211130 Rel.15378n(4555) and before allows attackers to cause a Denial of Service (DoS) via supplying a crafted web request.
low complexity
tp-link CWE-400
6.5
2023-10-26 CVE-2023-31418 Resource Exhaustion vulnerability in Elastic Elasticsearch
An issue has been identified with how Elasticsearch handled incoming requests on the HTTP layer.
network
low complexity
elastic CWE-400
7.5
2023-10-25 CVE-2023-39219 Resource Exhaustion vulnerability in Pingidentity Pingfederate
PingFederate Administrative Console dependency contains a weakness where console becomes unresponsive with crafted Java class loading enumeration requests
network
low complexity
pingidentity CWE-400
7.5
2023-10-25 CVE-2023-42031 Resource Exhaustion vulnerability in IBM Cics TX and Txseries for Multiplatforms
IBM TXSeries for Multiplatforms, 8.1, 8.2, and 9.1, CICS TX Standard CICS TX Advanced 10.1 and 11.1 could allow a privileged user to cause a denial of service due to uncontrolled resource consumption.
network
low complexity
ibm CWE-400
4.9
2023-10-25 CVE-2023-46118 Resource Exhaustion vulnerability in VMWare Rabbitmq
RabbitMQ is a multi-protocol messaging and streaming broker.
network
low complexity
vmware CWE-400
4.9
2023-10-25 CVE-2023-46120 Resource Exhaustion vulnerability in VMWare Rabbitmq Java Client
The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes.
network
low complexity
vmware CWE-400
7.5
2023-10-23 CVE-2023-43622 Resource Exhaustion vulnerability in Apache Http Server 2.4.55/2.4.56/2.4.57
An attacker, opening a HTTP/2 connection with an initial window size of 0, was able to block handling of that connection indefinitely in Apache HTTP Server.
network
low complexity
apache CWE-400
7.5
2023-10-17 CVE-2023-45810 Resource Exhaustion vulnerability in Openfga
OpenFGA is a flexible authorization/permission engine built for developers and inspired by Google Zanzibar.
network
low complexity
openfga CWE-400
7.5
2023-10-17 CVE-2022-43893 Resource Exhaustion vulnerability in IBM Security Verify Privilege On-Premises
IBM Security Verify Privilege On-Premises 11.5 could allow a privileged user to cause by using a malicious payload.
local
low complexity
ibm CWE-400
4.4