CWE-400

High likelihood

Uncontrolled Resource Consumption

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly control the allocation and maintenance of a limited resource.

3,128 vulnerabilities with CWE-400
CVE-2025-21389 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Unauthenticated Denial of Service via UPnP Device Host
CVSS 7.5
CVE-2025-21330 HIGH
Windows Remote Desktop Services - Denial of Service via Uncontrolled Resource Consumption
CVSS 7.5
CVE-2025-21300 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service in UPnP Device Host
CVSS 7.5
CVE-2025-21290 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service in Message Queuing
CVSS 7.5
CVE-2025-21289 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service in Message Queuing
CVSS 7.5
CVE-2025-21270 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service in MSMQ
CVSS 7.5
CVE-2025-21251 HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008/2012 - Denial of Service in MSMQ
CVSS 7.5
CVE-2025-21231 HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008-2012 - Denial of Service in IP Helper
CVSS 7.5
CVE-2025-21230 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service in MSMQ
CVSS 7.5
CVE-2025-21218 HIGH
Windows Server 2012, 2016, 2019, 2022, 2022 23H2, 2025 - DoS via Kerberos
CVSS 7.5
CVE-2025-21207 HIGH
Windows Connected Devices Platform Service - Denial of Service
CVSS 7.5
CVE-2025-21614 HIGH
go-git < 5.13.0 - Denial of Service via Crafted Git Server Response
CVSS 7.5
CVE-2024-24769 LOW
Vantage6: No limit on emails sent for password/MFA reset
CVE-2024-14036 HIGH
Dräger Core 1.0.5 Denial of Service via Malformed SDC Message
CVSS 7.5
CVE-2024-27686 HIGH
Mikrotik RouterOS 6.40.5-6.49.10 - DoS
CVSS 7.5
CVE-2024-33618 HIGH
Bosch BVMS < 12.0.1 - Uncontrolled Resource Consumption via Network Interface
CVSS 7.5
CVE-2024-14033 HIGH
Hirschmann EagleSDV Denial of Service via TLS
CVSS 7.5
CVE-2024-54192 MEDIUM
Tcpreplay 4.5.1 - Denial of Service via Crafted File in tcpedit_dlt_getplugin
CVSS 5.5
CVE-2024-48077 HIGH
NanoMQ 0.22.7 - Denial of Service via Recv-Q Queue Saturation
CVSS 7.5
CVE-2024-58306 HIGH
minaliC 2.0.0 - Denial of Service via Oversized GET Request
CVE-2024-55568 HIGH
Samsung Exynos and Modem Firmware - Denial of Service via Malformed MM Packets
CVSS 7.5
CVE-2024-57412 HIGH
SunOS Omnios v5.11 - Denial of Service via Crafted TCP Packets
CVSS 7.5
CVE-2024-40664 MEDIUM
Android - Local Denial of Service via AccessibilityFragment Logic Error
CVSS 6.2
CVE-2024-13065 MEDIUM
Akinsoft MyRezzta <2.05.01 - Uncontrolled Resource Consumption
CVSS 6.3
CVE-2024-49740 MEDIUM
Android - Denial of Service via Resource Exhaustion
CVSS 5.5
Details
Vulnerabilities 3,128
Exploit Likelihood High