CWE-400

High likelihood

Uncontrolled Resource Consumption

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly control the allocation and maintenance of a limited resource.

3,152 vulnerabilities with CWE-400
CVE-2019-10972 MEDIUM
Mitsubishi Electric FR Configurator2 < 1.16s - Denial of Service via Malicious Project File
CVSS 5.5
CVE-2019-1010172 HIGH
jsish 2.4.84 - Denial of Service via jsiValueGetString Function
CVSS 7.5
CVE-2019-14262 HIGH
MetadataExtractor 2.1.0 - Memory Corruption
CVSS 7.5
CVE-2019-1010266 MEDIUM
lodash < 4.17.11 - Denial of Service via Date Handler Regular Expression
CVSS 6.5
CVE-2019-0046 MEDIUM
Juniper Junos OS - Denial of Service via Broadcast Storm on me0 Interface
CVSS 6.5
CVE-2019-5445 MEDIUM
UI EdgeSwitch Firmware < 1.8.2 - Authenticated Denial of Service via SSH CLI Command Injection
CVSS 4.9
CVE-2019-1873 HIGH
Cisco ASA and FTD - Denial of Service via TLS/SSL Packet Header
CVSS 8.6
CVE-2019-11890 HIGH
Sony BRAVIA Smart TV - Denial of Service via SYN Flood
CVSS 7.5
CVE-2019-13232 LOW
Info-ZIP UnZip 6.0 - Denial of Service via Overlapping Files in ZIP Container
CVSS 3.3
CVE-2019-11478 MEDIUM
Linux kernel <4.4.182, <4.9.182, <4.14.127, <4.19.52, <5.1.11 - DoS
CVSS 5.3
CVE-2019-2259 CRITICAL
Qualcomm MSM8909W-SD 439 - Buffer Overflow
CVSS 9.8
CVE-2019-10636 MEDIUM
Marvell SSD Controller Secure Boot Bypass via Flash Memory Reprogramming
CVSS 4.6
CVE-2019-10977 HIGH
Mitsubishi Electric MELSEC-Q QJ71E71-100 Firmware < 20121 - Denial of Service via Crafted TCP Packets
CVSS 7.5
CVE-2019-0820 HIGH
.NET Framework and .NET Core - Denial of Service via RegEx String Processing
CVSS 7.5
CVE-2019-10113 HIGH
GitLab <11.7.8-11.9.2 - Uncontrolled Resource Consumption
CVSS 7.5
CVE-2019-1814 HIGH
Cisco Small Business 300 Series - DoS
CVSS 8.6
CVE-2019-6578 HIGH
SINAMICS PERFECT HARMONY GH180 - Unauthenticated Denial of Service
CVSS 7.5
CVE-2019-1704 HIGH
Cisco Firepower Threat Defense 6.0.0-6.2.3.12 - Unauthenticated Denial of Service via SMB Protocol Preprocessor
CVSS 7.5
CVE-2019-1703 HIGH
Cisco Firepower Threat Defense 6.2.1-6.2.3.12 - Unauthenticated Denial of Service via Crafted Packet Processing
CVSS 8.6
CVE-2019-1696 HIGH
Cisco Secure Firewall Management Center and Firepower Threat Defense - Denial of Service via SMB Protocol Preprocessor
CVSS 7.5
CVE-2019-10952 CRITICAL
CompactLogix 5370 & GuardLogix 5370 Firmware 20.011-30.014 - RCE via Stack Overflow
CVSS 9.8
CVE-2019-10948 HIGH
Fujifilm CR-IR 357 FCR Carbon X/FCR XC-2/FCR Capsula X - Denial of Service via TCP Packet Flood
CVSS 7.5
CVE-2019-2602 HIGH
Oracle JRE 7u211, 8u202, 11.0.2, 12 & Java SE Embedded 8u201 - DoS via Multiple Protocols
CVSS 7.5
CVE-2019-11470 MEDIUM
ImageMagick 7.0.8-26 Q16 - Denial of Service in Cineon Image Parser
CVSS 6.5
CVE-2019-11391 MEDIUM
OWASP ModSecurity Core Rule Set <3.1.0 - DoS
CVSS 5.3
Details
Vulnerabilities 3,152
Exploit Likelihood High