CWE-400
High likelihoodUncontrolled Resource Consumption
The product does not properly control the allocation and maintenance of a limited resource.
3,152 vulnerabilities with CWE-400
CVE-2017-16099
HIGH
no-case < 2.3.2 - Denial of Service via Regular Expression
CVSS 7.5
CVE-2017-16098
HIGH
charset < 1.0.1 - Regular Expression Denial of Service
CVSS 7.5
CVE-2017-16086
HIGH
ua-parser - Regular Expression Denial of Service via UserAgent Header
CVSS 7.5
CVE-2017-16030
HIGH
useragent < 2.1.12 - Uncontrolled Resource Consumption via Long Useragent Header
CVSS 7.5
CVE-2017-16025
MEDIUM
hapijs nes < 6.4.0 - Denial of Service via Invalid Cookie Header
CVSS 5.9
CVE-2017-16023
HIGH
decamelize 1.1.0-1.1.1 - Denial of Service via Unescaped Separator Values
CVSS 7.5
CVE-2017-16021
MEDIUM
uri-js < 2.1.1 - Inefficient Regular Expression Complexity in URL Validation
CVSS 6.5
CVE-2017-16013
HIGH
hapi 15.0.0-16.1.0 - Denial of Service via Malformed Accept-Encoding Header
CVSS 7.5
CVE-2017-6153
MEDIUM
F5 BIG-IP 11.5.1-11.5.5, 11.6.1-11.6.3.1, 12.1.0-12.1.3.1, 13.0.0-13.1.0.3 - Denial of Service via Zip Bomb
CVSS 5.3
CVE-2017-7651
HIGH
Eclipse Mosquitto < 1.4.14 - Unauthenticated Denial of Service via MQTT Connection Flood
CVSS 7.5
CVE-2017-12093
MEDIUM
Allen Bradley Micrologix 1400 <21.2 - DoS
CVSS 5.3
CVE-2017-12090
HIGH
Allen Bradley Micrologix 1400 Series B FRN 21.2 - DoS
CVSS 7.7
CVE-2017-15323
MEDIUM
Huawei Dp300 Firmware - Denial of Service
CVSS 5.5
CVE-2017-12174
HIGH
Apache ActiveMQ Artemis and HornetQ < 2.4.0 - Uncontrolled Resource Consumption via UDP Discovery
CVSS 7.5
CVE-2017-18214
HIGH
moment < 2.19.3 - Regular Expression Denial of Service via Crafted Date String
CVSS 7.5
CVE-2017-15130
MEDIUM
dovecot < 2.2.34 - Denial of Service via TLS SNI Configuration Lookups
CVSS 5.9
CVE-2017-17290
HIGH
Huawei TE60 V600R006C00-ViewPoint 9030 V100R011C02/03 - DoS
CVSS 7.5
CVE-2017-17166
MEDIUM
Huawei DP300 <V500R002C00 - Resource Exhaustion
CVSS 5.3
CVE-2017-15345
MEDIUM
Huawei LON-L29D Firmware LON-L29DC721B186 - Denial of Service via Crafted 3GPP Message
CVSS 5.3
CVE-2017-13233
MEDIUM
Android 5.1.1-8.1 - Denial of Service in libhevc ihevcd_ctb_boundary_strength_pbslice
CVSS 6.5
CVE-2017-6198
MEDIUM
Sandstorm < 0.203 - Denial of Service via Fork Bomb or Disk Space Exhaustion
CVSS 6.5
CVE-2017-14180
HIGH
Apport <2.20.7 - Privilege Escalation
CVSS 7.8
CVE-2017-14179
HIGH
Apport <2.13 - Privilege Escalation
CVSS 7.8
CVE-2017-14177
HIGH
Apport <2.20.7 - Privilege Escalation
CVSS 7.8
CVE-2017-15133
HIGH
miekg-dns < 1.0.4 - Denial of Service via TCP Connection Exhaustion
CVSS 7.5
Details
Vulnerabilities
3,152
Exploit Likelihood
High