CWE-400
High likelihoodUncontrolled Resource Consumption
The product does not properly control the allocation and maintenance of a limited resource.
3,152 vulnerabilities with CWE-400
CVE-2021-21328
MEDIUM
Vapor < 4.40.1 - Denial of Service via Unlimited Route Path Creation
CVSS 5.3
CVE-2021-22882
HIGH
UniFi Protect Controller < 1.17.1 - Denial of Service via Spoofed Camera
CVSS 7.5
CVE-2021-27405
HIGH
@progfay/scrapbox-parser <6.0.3 - DoS
CVSS 7.5
CVE-2021-1378
MEDIUM
Cisco StarOS 21.9.0-21.19.9 - Unauthenticated Denial of Service via SSH Service
CVSS 5.3
CVE-2021-22553
MEDIUM
Gerrit < 2.15.22 - Denial of Service via Jetty Session Accumulation
CVSS 6.5
CVE-2021-21317
MEDIUM
uap-core < 0.11.0 - Regular Expression Denial of Service via User-Agent Header
CVSS 5.3
CVE-2021-22985
HIGH
BIG-IP APM 16.0.x < 16.0.1.1 - Authenticated Denial of Service via VPN Traffic Processing
CVSS 7.5
CVE-2021-22880
HIGH
Active Record <6.1.2.1, 6.0.3.5, 5.2.4.5 - DoS
CVSS 7.5
CVE-2021-21296
LOW
fleetdm/fleet < 3.7.0 - Authenticated Denial of Service via Malformed Live Query Request
CVSS 2.7
CVE-2021-21306
MEDIUM
marked 1.1.1-2.0.0 - Regular Expression Denial of Service
CVSS 5.3
CVE-2021-21240
HIGH
httplib2 < 0.19.0 - Denial of Service via Malicious WWW-Authenticate Header
CVSS 7.5
CVE-2021-25227
LOW
Trend Micro Antivirus for Mac 2021 - Memory Corruption
CVSS 3.3
CVE-2021-1266
MEDIUM
Cisco Managed Services Accelerator < 3.10.0 - Authenticated Denial of Service via REST API Request Flood
CVSS 4.3
CVE-2021-21294
HIGH
Http4s <0.21.17, 0.22.0-M2, 1.0.0-M14 - DoS
CVSS 7.5
CVE-2021-21293
HIGH
blaze < 0.14.15 - Resource Exhaustion via Unbounded Connection Acceptance
CVSS 7.5
CVE-2021-21285
MEDIUM
Docker < 19.03.15 and 20.10.3 - Denial of Service via Malformed Image Manifest
CVSS 6.5
CVE-2021-21254
MEDIUM
CKEditor 5 Markdown Plugin < 25.0.0 - Denial of Service via Link Recognition Regex
CVSS 6.5
CVE-2021-25909
HIGH
ZIV Automation 4CCT-EA6-334126BF Firmware 3.23.80.27.36371 - Unauthenticated Denial of Service via Port 7919
CVSS 8.6
CVE-2021-20185
MEDIUM
Moodle < 3.5.16 - Denial of Service via Large Message
CVSS 5.3
CVE-2021-25226
MEDIUM
Trend Micro ServerProtect for Linux 3.0 - DoS
CVSS 5.5
CVE-2021-25225
MEDIUM
Trend Micro ServerProtect for Linux 3.0 - DoS
CVSS 5.5
CVE-2021-25224
MEDIUM
Trend Micro ServerProtect for Linux 3.0 - DoS
CVSS 5.5
CVE-2021-21271
MEDIUM
Tendermint Core <0.34.0 - Info Disclosure
CVSS 6.5
CVE-2021-1312
MEDIUM
Cisco Elastic Services Controller < 5.3.0.94 - Unauthenticated Denial of Service via TCP Flood
CVSS 5.3
CVE-2021-0215
MEDIUM
Junos EX/MX/SRX - Memory Corruption
CVSS 6.5
Details
Vulnerabilities
3,152
Exploit Likelihood
High