Show filters
293 Total Results
Displaying 81-90 of 293
Sort by:
Attacker Value
Unknown
CVE-2021-44502
Disclosure Date: April 15, 2022 (last updated February 23, 2025)
An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacker can control the size of a memset that occurs in calls to util_format in sr_unix/util_output.c.
0
Attacker Value
Unknown
CVE-2022-1337
Disclosure Date: April 13, 2022 (last updated February 23, 2025)
The image proxy component in Mattermost version 6.4.1 and earlier allocates memory for multiple copies of a proxied image, which allows an authenticated attacker to crash the server via links to very large image files.
0
Attacker Value
Unknown
CVE-2022-1333
Disclosure Date: April 13, 2022 (last updated February 23, 2025)
Mattermost Playbooks plugin v1.24.0 and earlier fails to properly check the limit on the number of webhooks, which allows authenticated and authorized users to create a specifically drafted Playbook which could trigger a large amount of webhook requests leading to Denial of Service.
0
Attacker Value
Unknown
CVE-2022-20622
Disclosure Date: April 13, 2022 (last updated February 23, 2025)
A vulnerability in IP ingress packet processing of the Cisco Embedded Wireless Controller with Catalyst Access Points Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, causing a denial of service (DoS) condition. The device may experience a performance degradation in traffic processing or high CPU usage prior to the unexpected reload. This vulnerability is due to improper rate limiting of IP packets to the management interface. An attacker could exploit this vulnerability by sending a steady stream of IP traffic at a high rate to the management interface of the affected device. A successful exploit could allow the attacker to cause the device to reload.
0
Attacker Value
Unknown
CVE-2022-20717
Disclosure Date: April 13, 2022 (last updated February 23, 2025)
A vulnerability in the NETCONF process of Cisco SD-WAN vEdge Routers could allow an authenticated, local attacker to cause an affected device to run out of memory, resulting in a denial of service (DoS) condition. This vulnerability is due to insufficient memory management when an affected device receives large amounts of traffic. An attacker could exploit this vulnerability by sending malicious traffic to an affected device. A successful exploit could allow the attacker to cause the device to crash, resulting in a DoS condition.
0
Attacker Value
Unknown
CVE-2022-27819
Disclosure Date: April 07, 2022 (last updated February 23, 2025)
SWHKD 1.1.5 allows unsafe parsing via the -c option. An information leak might occur but there is a simple denial of service (memory exhaustion) upon an attempt to parse a large or infinite file (such as a block or character device).
0
Attacker Value
Unknown
CVE-2022-1121
Disclosure Date: April 04, 2022 (last updated February 23, 2025)
A lack of appropriate timeouts in GitLab Pages included in GitLab CE/EE all versions prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14.9.2 allows an attacker to cause unlimited resource consumption.
0
Attacker Value
Unknown
CVE-2022-22950
Disclosure Date: April 01, 2022 (last updated February 23, 2025)
n Spring Framework versions 5.3.0 - 5.3.16 and older unsupported versions, it is possible for a user to provide a specially crafted SpEL expression that may cause a denial of service condition.
0
Attacker Value
Unknown
CVE-2021-43662
Disclosure Date: March 31, 2022 (last updated February 23, 2025)
totolink EX300_v2, ver V4.0.3c.140_B20210429 and A720R ,ver V4.1.5cu.470_B20200911 have an issue which causes uncontrolled resource consumption.
0
Attacker Value
Unknown
CVE-2022-22404
Disclosure Date: March 31, 2022 (last updated February 23, 2025)
IBM App Connect Enterprise Certified Container Dashboard UI (IBM App Connect Enterprise Certified Container 1.5, 2.0, 2.1, 3.0, and 3.1) may be vulnerable to denial of service due to excessive rate limiting.
0