Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2019-08-20 CVE-2019-4049 Resource Exhaustion vulnerability in IBM MQ
IBM MQ 9.1.0.0, 9.1.0.1, 9.1.1, and 9.1.0.2 is vulnerable to a denial of service due to a local user being able to fill up the disk space of the underlying filesystem using the error logging service.
local
low complexity
ibm CWE-400
2.1
2019-08-14 CVE-2019-9583 Resource Exhaustion vulnerability in Eq-3 Homematic Ccu2 Firmware and Homematic Ccu3 Firmware
eQ-3 Homematic CCU2 and CCU3 obtain session IDs without login.
network
low complexity
eq-3 CWE-400
6.4
2019-08-13 CVE-2019-9512 Resource Exhaustion vulnerability in multiple products
Some HTTP/2 implementations are vulnerable to ping floods, potentially leading to a denial of service.
network
low complexity
apple apache debian nodejs CWE-400
7.5
2019-08-13 CVE-2019-10942 Resource Exhaustion vulnerability in Siemens products
A vulnerability has been identified in SCALANCE X-200 switch family (incl.
network
low complexity
siemens CWE-400
5.0
2019-08-02 CVE-2019-14233 Resource Exhaustion vulnerability in multiple products
An issue was discovered in Django 1.11.x before 1.11.23, 2.1.x before 2.1.11, and 2.2.x before 2.2.4.
network
low complexity
djangoproject opensuse CWE-400
7.5
2019-08-02 CVE-2019-14232 Resource Exhaustion vulnerability in multiple products
An issue was discovered in Django 1.11.x before 1.11.23, 2.1.x before 2.1.11, and 2.2.x before 2.2.4.
network
low complexity
djangoproject opensuse CWE-400
7.5
2019-07-29 CVE-2019-13655 Resource Exhaustion vulnerability in Imgix 20190619
Imgix through 2019-06-19 allows remote attackers to cause a denial of service (resource consumption) by manipulating a small JPEG file to specify dimensions of 64250x64250 pixels, which is mishandled during an attempt to load the 'whole image' into memory.
network
imgix CWE-400
4.3
2019-07-26 CVE-2019-10972 Resource Exhaustion vulnerability in Mitsubishielectric Electric FR Configurator2
Mitsubishi Electric FR Configurator2, Version 1.16S and prior.
7.1
2019-07-25 CVE-2019-1010172 Resource Exhaustion vulnerability in Jsish 2.4.842.0484
Jsish 2.4.84 2.0484 is affected by: Uncontrolled Resource Consumption.
network
low complexity
jsish CWE-400
5.0
2019-07-25 CVE-2019-14262 Resource Exhaustion vulnerability in Metadataextractor Project Metadataextractor 2.1.0
MetadataExtractor 2.1.0 allows stack consumption.
network
low complexity
metadataextractor-project CWE-400
7.5