CWE-400
High likelihoodUncontrolled Resource Consumption
The product does not properly control the allocation and maintenance of a limited resource.
3,152 vulnerabilities with CWE-400
CVE-2020-6173
MEDIUM
The Update Framework 0.7.2-0.12.1 - Uncontrolled Resource Consumption
CVSS 5.3
CVE-2019-25724
MEDIUM
Dräger Infinity M300 VG2.x Network-Based Denial of Service
CVSS 6.5
CVE-2019-25721
MEDIUM
Dräger Infinity M300 VG2.3.1 Network-Based Denial of Service
CVSS 6.5
CVE-2019-25401
HIGH
Bematech MP-4200 TH - Denial of Service via Malformed Admin Configuration Parameters
CVSS 7.5
CVE-2019-25072
HIGH
Tendermint <= 0.31.1 - Denial of Service via Gzip Compression
CVSS 7.5
CVE-2019-19343
HIGH
JBoss Remoting < 5.0.14 and Undertow < 2.0.25 - Denial of Service via HttpOpenListener Memory Leak
CVSS 7.5
CVE-2019-8774
MEDIUM
iPadOS < 13.1 - Denial of Service via Maliciously Crafted iBooks File
CVSS 5.5
CVE-2019-20922
HIGH
Handlebars 4.0.0-4.4.4 - Regular Expression Denial of Service via Eager Matching
CVSS 7.5
CVE-2019-5645
HIGH
Rapid7 Metasploit < 5.0.27 - Denial of Service via HTTP Handler Regular Expression Injection
CVSS 7.5
CVE-2019-20858
HIGH
Mattermost Server < 5.15.0 - Denial of Service via SQL LIKE Clause
CVSS 7.5
CVE-2019-20812
MEDIUM
Linux Kernel < 5.4.7 - Denial of Service via TPACKET_V3 Retire Block Timeout Calculation
CVSS 5.5
CVE-2019-11048
MEDIUM
PHP 7.2.0-7.2.30 - Denial of Service via Oversized Upload Filename
CVSS 5.3
CVE-2019-19301
HIGH
Siemens SCALANCE and SIMATIC - Denial of Service via Profinet TCP Stack
CVSS 7.5
CVE-2019-19300
HIGH
Siemens SIMATIC and SINAMICS Products - Denial of Service via TCP Stack Resource Consumption
CVSS 7.5
CVE-2019-17657
HIGH
Fortinet Fortianalyzer < 6.2.3 - Denial of Service
CVSS 7.5
CVE-2019-18904
MEDIUM
rmt-server < 2.5.2-3.26.1 - Denial of Service via Migration Request
CVSS 6.5
CVE-2019-5149
HIGH
WAGO PFC100 and PFC200 Firmware - Denial of Service via FastCGI Process Exhaustion
CVSS 7.5
CVE-2019-19281
HIGH
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 - DoS
CVSS 7.5
CVE-2019-18336
HIGH
SIMATIC S7-300 CPU Firmware < 3.3.17 - Unauthenticated Denial of Service via Profinet Port 102
CVSS 7.5
CVE-2019-13011
MEDIUM
GitLab 8.11.0-12.0.2 - Authenticated Uncontrolled Resource Consumption via Merge Request Template Enumeration
CVSS 4.3
CVE-2019-13009
MEDIUM
GitLab 9.2.0-12.0.2 - Unauthorized File Access via Unsaved Personal Snippet Uploads
CVSS 6.5
CVE-2019-13007
MEDIUM
GitLab 11.11-12.0.2 - Uncontrolled Resource Consumption via Service Template Enablement
CVSS 4.9
CVE-2019-13003
HIGH
GitLab < 12.0.3 - Uncontrolled Resource Consumption in CI Parser
CVSS 7.5
CVE-2019-13946
HIGH
Siemens PROFINET-IO Stack < V06.00 - Unauthenticated Denial of Service via DCE-RPC Diagnostic Package Requests
CVSS 7.5
CVE-2019-13940
MEDIUM
SIMATIC ET 200pro IM154-8 PN/DP CPU - Path Traversal
CVSS 5.3
Details
Vulnerabilities
3,152
Exploit Likelihood
High