CWE-400

High likelihood

Uncontrolled Resource Consumption

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly control the allocation and maintenance of a limited resource.

3,152 vulnerabilities with CWE-400
CVE-2018-19162 HIGH
Divi < 4.0.5.0 - Remote Denial of Service via Invalid Block Storage
CVSS 7.5
CVE-2018-19161 HIGH
alqo < 4.1 - Remote Denial of Service via Invalid Block Storage
CVSS 7.5
CVE-2018-19160 HIGH
Diamond < 3.0.1.2 - Denial of Service via Invalid Block Storage
CVSS 7.5
CVE-2018-19159 HIGH
lux < 5.2.2 - Remote Denial of Service via Invalid Block Storage
CVSS 7.5
CVE-2018-19157 HIGH
Phore < 1.3.3.1 - Remote Denial of Service via Invalid Block Headers
CVSS 7.5
CVE-2018-19156 HIGH
PIVX < 3.1.03 - Remote Denial of Service via Invalid Block Headers
CVSS 7.5
CVE-2018-19155 HIGH
navcoin < 4.3.0 - Remote Denial of Service via Invalid Headers/Blocks
CVSS 7.5
CVE-2018-19154 HIGH
HTMLCOIN < 2.12 - Unauthenticated Denial of Service via Invalid Headers/Blocks
CVSS 7.5
CVE-2018-19153 HIGH
particl < 0.17 - Remote Denial of Service via Invalid Headers/Blocks
CVSS 7.5
CVE-2018-19152 HIGH
emercoin < 0.7.0 - Remote Denial of Service via Invalid Headers/Blocks
CVSS 7.5
CVE-2018-19151 HIGH
qtum < 0.16 - Remote Denial of Service via Invalid Headers/Blocks
CVSS 7.5
CVE-2018-11936 CRITICAL
Snapdragon Auto et al - Memory Corruption
CVSS 9.8
CVE-2018-7821 HIGH
SoMachine Basic and Modicon M221 < 1.10.0.0 - Denial of Service via Ethernet Flooding
CVSS 7.5
CVE-2018-19037 HIGH
Virgin Media Hub 3.0 Firmware - Denial of Service via Web Interface POST Requests
CVSS 7.5
CVE-2018-13994 HIGH
PHOENIX CONTACT FL SWITCH 3xxx 4xxx 48xx 1.0-1.34 - Denial of Service via Excessive Connections
CVSS 7.5
CVE-2018-15388 HIGH
Cisco ASA <9.4.4.34, >=9.5 <9.6.4.25 & FTD <6.2.3.12 - DoS via WebVPN Login
CVSS 8.6
CVE-2018-16878 MEDIUM
Pacemaker <= 2.0.1 - Denial of Service via Uncontrolled Process Preference
CVSS 5.5
CVE-2018-19282 CRITICAL
Rockwell Automation PowerFlex 525 AC Drives <5.001 - DoS
CVSS 9.8
CVE-2018-4409 MEDIUM
Safari < 12.0.1 - Denial of Service via Resource Exhaustion
CVSS 6.5
CVE-2018-3979 MEDIUM
Ubuntu Linux Nouveau Display Driver - Remote Denial-of-Service via GPU Shader Execution
CVSS 6.5
CVE-2018-13296 HIGH
Synology MailPlus Server < 2.0.5-0606 - Denial of Service via TLS Client-Initiated Renegotiation
CVSS 7.5
CVE-2018-12545 HIGH
Eclipse Jetty 9.3.x-9.4.x - Denial of Service via Large or Numerous SETTINGS Frames
CVSS 7.5
CVE-2018-19158 HIGH
ColossusCoinXT <= 1.0.5 - Denial of Service via Invalid Block Headers
CVSS 7.5
CVE-2018-18898 HIGH
Best Practical Request Tracker 4.1.13-4.4 - Denial of Service via Email Address Parsing
CVSS 7.5
CVE-2018-5819 HIGH
LibRaw < 0.19.1 - Denial of Service via parse_sinar_ia() Function
CVSS 7.5
Details
Vulnerabilities 3,152
Exploit Likelihood High