Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-770 (不加限制或调节的资源分配) — Vulnerability Class 796

796 vulnerabilities classified as CWE-770 (不加限制或调节的资源分配). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-45797 LibHTP's unbounded header handling leads to denial service — libhtp 7.5 High2024-10-16
CVE-2024-41128 Action Dispatch has possible ReDoS vulnerability in query parameter filtering — rails 7.5 -2024-10-16
CVE-2024-47874 Starlette Denial of service (DoS) via multipart/form-data — starlette 7.5 -2024-10-15
CVE-2024-47509 Junos OS Evolved: Specific low privileged CLI commands and SNMP GET requests can trigger a resource leak #3 — Junos OS Evolved 6.5 Medium2024-10-11
CVE-2024-47508 Junos OS Evolved: Specific low privileged CLI commands and SNMP GET requests can trigger a resource leak #2 — Junos OS Evolved 6.5 Medium2024-10-11
CVE-2024-47505 Junos OS Evolved: Specific low privileged CLI commands and SNMP GET requests can trigger a resource leak #1 — Junos OS Evolved 6.5 Medium2024-10-11
CVE-2024-47502 Junos OS Evolved: TCP session state is not always cleared on the Routing Engine leading to DoS — Junos OS Evolved 7.5 High2024-10-11
CVE-2024-43567 Windows Hyper-V Denial of Service Vulnerability — Windows Server 2019 7.5 High2024-10-08
CVE-2024-47614 async-graphql vulnerable to Directive Overload — async-graphql 7.5 High2024-10-03
CVE-2021-22532 Possible NLDAP Denial of Service attack Vulnerability — eDirectory 7.6 High2024-09-12
CVE-2024-45412 Yeti affected by a Potential Denial of Service due to the One Milion Unicode characters attack — yeti 5.3 Medium2024-09-10
CVE-2024-23185 Open-Xchange Dovecot 安全漏洞 — OX Dovecot Pro 7.5 High2024-09-10
CVE-2024-23184 Open-Xchange Dovecot 安全漏洞 — OX Dovecot Pro 5.0 Medium2024-09-10
CVE-2024-7734 Phoenix Contact: Multiple mGuard devices are vulnerable to a drain of open file descriptors. — FL MGUARD 2102 5.3 Medium2024-09-10
CVE-2024-8391 Eclipse Vert.x gRPC server does not limit the maximum message size — Eclipse Vert.x--AI2024-09-04
CVE-2024-43783 Apollo Router Coprocessors may cause Denial-of-Service when handling request bodies — router 7.5 High2024-08-27
CVE-2024-41175 Beckhoff: Local Denial-of-Service vulnerability in TwinCAT/BSD and the IPC-Diagnostics package — IPC Diagnostics package 5.5 Medium2024-08-27
CVE-2024-43410 Russh has an OOM Denial of Service due to allocation of untrusted amount — russh 7.5 High2024-08-21
CVE-2024-6098 PTC Kepware ThingWorx Kepware Server Allocation of Resources Without Limits or Throttling — Kepware ThingWorx Kepware Server 5.3 Medium2024-08-16
CVE-2024-6004 Lenovo printers 安全漏洞 — Printers 6.5 Medium2024-08-16
CVE-2024-5210 Lenovo printers 安全漏洞 — Printers 6.5 Medium2024-08-16
CVE-2024-5209 Lenovo printers 安全漏洞 — Printers 6.5 Medium2024-08-16
CVE-2024-4782 Lenovo printers 安全漏洞 — Printers 6.5 Medium2024-08-16
CVE-2024-4781 Lenovo printers 安全漏洞 — Printers 6.5 Medium2024-08-16
CVE-2024-7113 Allocation of Resources Without Limits or Throttling in AVEVA SuiteLink Server — SuiteLink Server 4.3AIMediumAI2024-08-13
CVE-2024-36462 Allocation of resources without limits or throttling (uncontrolled resource consumption) — Zabbix 7.5 High2024-08-09
CVE-2024-39944 Dahua NVR 安全漏洞 — IPC-HX8XXX and NVR4XXX 7.5 High2024-07-31
CVE-2024-6504 Rapid7 InsightVM Protection Mechanism Failure — InsightVM 4.3 Medium2024-07-18
CVE-2024-38535 Suricata http2: oom from duplicate headers — suricata 7.5 High2024-07-11
CVE-2024-38534 Suricata modbus: txs without responses are never freed — suricata 7.5 High2024-07-11

Vulnerabilities classified as CWE-770 (不加限制或调节的资源分配) represent 796 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.