CWE-400

High likelihood

Uncontrolled Resource Consumption

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly control the allocation and maintenance of a limited resource.

3,141 vulnerabilities with CWE-400
CVE-2023-35191 MEDIUM
Intel SPS Firmware - Denial of Service via Uncontrolled Resource Consumption
CVSS 6.8
CVE-2023-52602 HIGH
Linux Kernel < 4.19.307 - Denial of Service via JFS dtSearch Slab Out-of-Bounds Read
CVSS 7.8
CVE-2023-51775 MEDIUM
jose4j < 0.9.4 - Denial of Service via Large PBES2 Count Value
CVSS 6.5
CVE-2023-45874 MEDIUM
Couchbase Server 6.5.0-7.2.2 - Denial of Service via Data Reader Thread Exhaustion
CVSS 4.3
CVE-2023-50868 HIGH
ISC BIND - Denial of Service via NSEC3 Closest Encloser Proof
CVSS 7.5
CVE-2023-29153 MEDIUM
Intel(R) SPS <SPS_E5_06.01.04.002.0 - DoS
CVSS 4.9
CVE-2023-25769 MEDIUM
Intel Thunderbolt DCH Driver < 88 - Authenticated Denial of Service via Uncontrolled Resource Consumption
CVSS 5.5
CVE-2023-6681 MEDIUM
JWCrypto < 1.5.1 - Denial of Service via Excessive Resource Consumption
CVSS 5.3
CVE-2023-41707 MEDIUM
Open-xchange Appsuite < 7.6.3 - Denial of Service
CVSS 6.5
CVE-2023-41706 MEDIUM
Open-xchange Appsuite < 7.6.3 - Denial of Service
CVSS 6.5
CVE-2023-41705 MEDIUM
Open-xchange Appsuite < 7.6.3 - Denial of Service
CVSS 6.5
CVE-2023-32341 MEDIUM
IBM Sterling B2B Integrator 6.0.0.0-6.0.3.8 & 6.1.0.0-6.1.2.3 DoS via Resource Consumption
CVSS 6.5
CVE-2023-22819 MEDIUM
Western Digital My Cloud OS 5 and My Cloud Home - Unauthenticated Denial of Service via Memory Exhaustion
CVSS 4.9
CVE-2023-52425 HIGH
libexpat < 2.5.0 - Denial of Service via Large Token Reparsing
CVSS 7.5
CVE-2023-31006 MEDIUM
IBM Security Verify Access 10.0.0.0-10.0.6.1 - Denial of Service via DSC Server
CVSS 6.5
CVE-2023-30999 HIGH
IBM Security Verify Access 10.0.0.0-10.0.6.1 - Denial of Service via Uncontrolled Resource Consumption
CVSS 7.5
CVE-2023-45028 MEDIUM
QNAP QTS, QuTS hero, and QuTScloud - Authenticated Denial of Service via Resource Consumption
CVSS 5.5
CVE-2023-6450 MEDIUM
Lenovo App Store < 12.4.20 - Denial of Service via Incorrect Permissions
CVSS 5.5
CVE-2023-22512 HIGH
Confluence Data Center and Server 5.6.0-7.19.13 - Unauthenticated Denial of Service
CVSS 7.5
CVE-2023-52098 HIGH
Huawei DMS Module - Denial of Service
CVSS 7.5
CVE-2023-52113 HIGH
Huawei EMUI and HarmonyOS - Denial of Service via ActivityManagerService launchAnyWhere
CVSS 7.5
CVE-2023-48297 HIGH
Discourse < 3.1.4 - Uncontrolled Resource Consumption via Chat Mention Expansion
CVSS 8.6
CVE-2023-34061 HIGH
Cloud Foundry routing <0.163.0-0.283.0 - DoS
CVSS 7.5
CVE-2023-49295 MEDIUM
quic-go < 0.37.7, 0.38.2, 0.39.4 - Uncontrolled Resource Consumption via PATH_CHALLENGE Frame Flood
CVSS 6.4
CVE-2023-42941 MEDIUM
iPadOS < 17.2 - Denial of Service via Crafted Bluetooth Packets
CVSS 4.8
Details
Vulnerabilities 3,141
Exploit Likelihood High