CWE-400
High likelihoodUncontrolled Resource Consumption
The product does not properly control the allocation and maintenance of a limited resource.
3,152 vulnerabilities with CWE-400
CVE-2020-11937
MEDIUM
whoopsie - Denial of Service via Memory Leak in parse_report
CVSS 5.5
CVE-2020-12739
MEDIUM
Fanuc i Series CNC - Unauthenticated Denial of Service
CVSS 5.3
CVE-2020-8220
MEDIUM
Pulse Connect Secure <9.1R8 - Command Injection
CVSS 6.5
CVE-2020-8192
MEDIUM
Fastify 2.14.1 and 3.0.0-rc.4 - Denial of Service via Schema Validation
CVSS 6.5
CVE-2020-7016
MEDIUM
Kibana < 6.8.11 and 7.8.1 - Denial of Service in Timelion
CVSS 4.8
CVE-2020-8175
MEDIUM
jpeg-js < 0.4.0 - Denial of Service via Crafted JPEG Image
CVSS 5.5
CVE-2020-14297
MEDIUM
Redhat Amq < 4.0.34 - Denial of Service
CVSS 6.5
CVE-2020-8557
MEDIUM
Kubernetes <1.16.13, 1.17.9+, 1.18.6+ - Info Disclosure
CVSS 5.5
CVE-2020-3372
MEDIUM
Cisco SD-WAN vManage Software - DoS
CVSS 6.5
CVE-2020-3351
HIGH
Cisco SD-WAN Solution Software - DoS
CVSS 8.6
CVE-2020-15101
LOW
freewvs < 0.1.1 - Denial of Service via Deep Directory Recursion
CVSS 2.8
CVE-2020-15100
LOW
freewvs < 0.1.1 - Denial of Service via Large File Processing
CVSS 2.8
CVE-2020-7587
HIGH
Siemens SIMATIC and Opcenter Products - Remote Denial of Service and Information Disclosure via Crafted Packets
CVSS 8.2
CVE-2020-7584
HIGH
SIMATIC S7-200 SMART CPU >=2.2 <2.5.1 - Denial of Service via Large Number of New Connections
CVSS 7.5
CVE-2020-10745
HIGH
Samba < 4.10.17, < 4.11.11, < 4.12.4 - Denial of Service via NetBios over TCP/IP
CVSS 7.5
CVE-2020-15565
HIGH
Xen 3.2.0-4.13.0 - Denial of Service via Insufficient Cache Write-Back
CVSS 8.8
CVE-2020-8185
MEDIUM
Rails 6.0.0-6.0.3.1 - Unauthenticated Denial of Service via Pending Migration Execution
CVSS 6.5
CVE-2020-8663
HIGH
envoyproxy/envoy < 1.12.4 - Uncontrolled Resource Consumption via Connection Handling
CVSS 7.5
CVE-2020-12603
HIGH
Envoy <1.14.2-1.12.4 - Memory Corruption
CVSS 7.5
CVE-2020-5603
HIGH
Mitsubishi Electoric FA Engineering Software - DoS
CVSS 7.5
CVE-2020-9611
MEDIUM
Adobe Acrobat and Reader DC < 2020.006.20042 - Denial of Service via Stack Exhaustion
CVSS 5.5
CVE-2020-7507
HIGH
Easergy T300 Firmware < 1.5.2 - Denial of Service via Repeated Login Attempts
CVSS 7.5
CVE-2020-14152
HIGH
libjpeg < 9d - Uncontrolled Resource Consumption in jpeg_mem_available
CVSS 7.1
CVE-2020-0173
MEDIUM
Android 10 - Unauthenticated Denial of Service via Parse_lins Input Validation
CVSS 6.5
CVE-2020-11090
HIGH
Indy Node 1.12.2 - Uncontrolled Resource Consumption via Malformed TAA Transaction
CVSS 7.5
Details
Vulnerabilities
3,152
Exploit Likelihood
High