Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2019-04-01 CVE-2018-13296 Resource Exhaustion vulnerability in Synology Mailplus Server
Uncontrolled resource consumption vulnerability in TLS configuration in Synology MailPlus Server before 2.0.5-0606 allows remote attackers to conduct denial-of-service attacks via client-initiated renegotiation.
network
low complexity
synology CWE-400
5.0
2019-03-25 CVE-2019-4046 Resource Exhaustion vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to a denial of service, caused by improper handling of request headers.
network
low complexity
ibm CWE-400
7.5
2019-03-25 CVE-2019-3874 Resource Exhaustion vulnerability in multiple products
The SCTP socket buffer used by a userspace application is not accounted by the cgroups subsystem.
6.5
2019-03-21 CVE-2018-19158 Resource Exhaustion vulnerability in Colossusxt Colossuscoinxt
ColossusCoinXT through 1.0.5 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of service, exploitable by an attacker who acquires even a small amount of stake/coins in the system.
network
low complexity
colossusxt CWE-400
7.5
2019-03-21 CVE-2018-18898 Resource Exhaustion vulnerability in multiple products
The email-ingestion feature in Best Practical Request Tracker 4.1.13 through 4.4 allows denial of service by remote attackers via an algorithmic complexity attack on email address parsing.
7.5
2019-03-06 CVE-2019-9587 Resource Exhaustion vulnerability in Glyphandcog Xpdfreader 4.01
There is a stack consumption issue in md5Round1() located in Decrypt.cc in Xpdf 4.01.
6.8
2019-03-05 CVE-2019-6559 Resource Exhaustion vulnerability in Moxa products
Moxa IKS and EDS allow remote authenticated users to cause a denial of service via a specially crafted packet, which may cause the switch to crash.
network
low complexity
moxa CWE-400
6.5
2019-02-20 CVE-2018-5819 Resource Exhaustion vulnerability in multiple products
An error within the "parse_sinar_ia()" function (internal/dcraw_common.cpp) within LibRaw versions prior to 0.19.1 can be exploited to exhaust available CPU resources.
network
low complexity
libraw debian CWE-400
7.8
2019-02-20 CVE-2018-20030 Resource Exhaustion vulnerability in Libexif Project Libexif 0.6.21
An error when processing the EXIF_IFD_INTEROPERABILITY and EXIF_IFD_EXIF tags within libexif version 0.6.21 can be exploited to exhaust available CPU resources.
network
low complexity
libexif-project CWE-400
7.8
2019-02-18 CVE-2019-8909 Resource Exhaustion vulnerability in Wtcms Project Wtcms 1.0
An issue was discovered in WTCMS 1.0.
network
low complexity
wtcms-project CWE-400
5.0