CWE-400
Uncontrolled Resource Consumption
Description
The product does not properly control the allocation and maintenance of a limited resource.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-147 · CAPEC-227 · CAPEC-492
CVEs mapped to this weakness (4,104)
page 42 of 206| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-20021 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2023 | An issue discovered in MikroTik Router v6.46.3 and earlier allows attacker to cause denial of service via misconfiguration in the SSH daemon. | ||
| CVE-2023-35339 | Hig | 0.49 | 7.5 | 0.02 | Jul 11, 2023 | Windows CryptoAPI Denial of Service Vulnerability | ||
| CVE-2023-35298 | Hig | 0.49 | 7.5 | 0.02 | Jul 11, 2023 | HTTP.sys Denial of Service Vulnerability | ||
| CVE-2023-35921 | Hig | 0.49 | 7.5 | 0.01 | Jul 11, 2023 | A vulnerability has been identified in SIMATIC MV540 H (All versions < V3.3.4), SIMATIC MV540 S (All versions < V3.3.4), SIMATIC MV550 H (All versions < V3.3.4), SIMATIC MV550 S (All versions < V3.3.4), SIMATIC MV560 U (All versions < V3.3.4), SIMATIC MV560 X (All versions <… | ||
| CVE-2023-35920 | Hig | 0.49 | 7.5 | 0.01 | Jul 11, 2023 | A vulnerability has been identified in SIMATIC MV540 H (All versions < V3.3.4), SIMATIC MV540 S (All versions < V3.3.4), SIMATIC MV550 H (All versions < V3.3.4), SIMATIC MV550 S (All versions < V3.3.4), SIMATIC MV560 U (All versions < V3.3.4), SIMATIC MV560 X (All versions <… | ||
| CVE-2023-26509 | Hig | 0.49 | 7.5 | 0.01 | Jul 3, 2023 | AnyDesk 7.0.8 allows remote Denial of Service. | ||
| CVE-2023-33141 | Hig | 0.49 | 7.5 | 0.02 | Jun 23, 2023 | Yet Another Reverse Proxy (YARP) Denial of Service Vulnerability | ||
| CVE-2023-2990 | Hig | 0.49 | 7.5 | 0.01 | Jun 22, 2023 | Fortra Globalscape EFT versions before 8.1.0.16 suffer from a denial of service vulnerability, where a compressed message that decompresses to itself can cause infinite recursion and crash the service | ||
| CVE-2023-34166 | Hig | 0.49 | 7.5 | 0.00 | Jun 19, 2023 | Vulnerability of system restart triggered by abnormal callbacks passed to APIs.Successful exploitation of this vulnerability may cause the system to restart. | ||
| CVE-2022-33168 | Hig | 0.49 | 7.5 | 0.01 | Jun 15, 2023 | IBM Security Directory Suite VA 8.0.1 could allow an attacker to cause a denial of service due to uncontrolled resource consumption. IBM X-Force ID: 228588. | ||
| CVE-2023-29331 | Hig | 0.49 | 7.5 | 0.03 | Jun 14, 2023 | .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability | ||
| CVE-2023-35110 | Hig | 0.49 | 7.5 | 0.01 | Jun 14, 2023 | An issue was discovered jjson thru 0.1.7 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies. | ||
| CVE-2023-34624 | Hig | 0.49 | 7.5 | 0.01 | Jun 14, 2023 | An issue was discovered htmlcleaner thru = 2.28 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies. | ||
| CVE-2023-34617 | Hig | 0.49 | 7.5 | 0.01 | Jun 14, 2023 | An issue was discovered genson thru 1.6 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies. | ||
| CVE-2023-34616 | Hig | 0.49 | 7.5 | 0.01 | Jun 14, 2023 | An issue was discovered pbjson thru 0.4.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies. | ||
| CVE-2023-34615 | Hig | 0.49 | 7.5 | 0.01 | Jun 14, 2023 | An issue was discovered JSONUtil thru 5.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies. | ||
| CVE-2023-34614 | Hig | 0.49 | 7.5 | 0.01 | Jun 14, 2023 | An issue was discovered jmarsden/jsonij thru 0.5.2 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies. | ||
| CVE-2023-34613 | Hig | 0.49 | 7.5 | 0.01 | Jun 14, 2023 | An issue was discovered sojo thru 1.1.1 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies. | ||
| CVE-2023-34612 | Hig | 0.49 | 7.5 | 0.01 | Jun 14, 2023 | An issue was discovered ph-json thru 9.5.5 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies. | ||
| CVE-2023-34610 | Hig | 0.49 | 7.5 | 0.01 | Jun 14, 2023 | An issue was discovered json-io thru 4.14.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies. |
- risk 0.49cvss 7.5epss 0.01
An issue discovered in MikroTik Router v6.46.3 and earlier allows attacker to cause denial of service via misconfiguration in the SSH daemon.
- risk 0.49cvss 7.5epss 0.02
Windows CryptoAPI Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
HTTP.sys Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
A vulnerability has been identified in SIMATIC MV540 H (All versions < V3.3.4), SIMATIC MV540 S (All versions < V3.3.4), SIMATIC MV550 H (All versions < V3.3.4), SIMATIC MV550 S (All versions < V3.3.4), SIMATIC MV560 U (All versions < V3.3.4), SIMATIC MV560 X (All versions <…
- risk 0.49cvss 7.5epss 0.01
A vulnerability has been identified in SIMATIC MV540 H (All versions < V3.3.4), SIMATIC MV540 S (All versions < V3.3.4), SIMATIC MV550 H (All versions < V3.3.4), SIMATIC MV550 S (All versions < V3.3.4), SIMATIC MV560 U (All versions < V3.3.4), SIMATIC MV560 X (All versions <…
- risk 0.49cvss 7.5epss 0.01
AnyDesk 7.0.8 allows remote Denial of Service.
- risk 0.49cvss 7.5epss 0.02
Yet Another Reverse Proxy (YARP) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
Fortra Globalscape EFT versions before 8.1.0.16 suffer from a denial of service vulnerability, where a compressed message that decompresses to itself can cause infinite recursion and crash the service
- risk 0.49cvss 7.5epss 0.00
Vulnerability of system restart triggered by abnormal callbacks passed to APIs.Successful exploitation of this vulnerability may cause the system to restart.
- risk 0.49cvss 7.5epss 0.01
IBM Security Directory Suite VA 8.0.1 could allow an attacker to cause a denial of service due to uncontrolled resource consumption. IBM X-Force ID: 228588.
- risk 0.49cvss 7.5epss 0.03
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
An issue was discovered jjson thru 0.1.7 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.
- risk 0.49cvss 7.5epss 0.01
An issue was discovered htmlcleaner thru = 2.28 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.
- risk 0.49cvss 7.5epss 0.01
An issue was discovered genson thru 1.6 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.
- risk 0.49cvss 7.5epss 0.01
An issue was discovered pbjson thru 0.4.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.
- risk 0.49cvss 7.5epss 0.01
An issue was discovered JSONUtil thru 5.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.
- risk 0.49cvss 7.5epss 0.01
An issue was discovered jmarsden/jsonij thru 0.5.2 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.
- risk 0.49cvss 7.5epss 0.01
An issue was discovered sojo thru 1.1.1 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.
- risk 0.49cvss 7.5epss 0.01
An issue was discovered ph-json thru 9.5.5 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.
- risk 0.49cvss 7.5epss 0.01
An issue was discovered json-io thru 4.14.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.