CVE-2024-35246 – Westermo L210-F2G Lynx Improper Control of Interaction Frequency
https://notcve.org/view.php?id=CVE-2024-35246
An attacker may be able to cause a denial-of-service condition by sending many packets repeatedly. • https://www.cisa.gov/news-events/ics-advisories/icsa-24-172-03 • CWE-799: Improper Control of Interaction Frequency •
CVE-2024-6162 – Undertow: url-encoded request path information can be broken on ajp-listener
https://notcve.org/view.php?id=CVE-2024-6162
URL-encoded request path information can be broken for concurrent requests on ajp-listener, causing the wrong path to be processed and resulting in a possible denial of service. ... This flaw can potentially lead to a denial of service, as legitimate resources become inaccessible due to the path mix-up. • https://access.redhat.com/security/cve/CVE-2024-6162 https://bugzilla.redhat.com/show_bug.cgi?id=2293069 https://access.redhat.com/errata/RHSA-2024:1194 https://access.redhat.com/errata/RHSA-2024:4386 https://access.redhat.com/errata/RHSA-2024:4884 https://issues.redhat.com/browse/JBEAP-26268 • CWE-400: Uncontrolled Resource Consumption •
CVE-2024-29013
https://notcve.org/view.php?id=CVE-2024-29013
Heap-based buffer overflow vulnerability in the SonicOS SSL-VPN allows an authenticated remote attacker to cause Denial of Service (DoS) via memcpy function. Una vulnerabilidad de desbordamiento de búfer basada en montón en SonicOS SSL-VPN permite que un atacante remoto autenticado provoque una denegación de servicio (DoS) a través de la función memcpy. • https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2024-0009 • CWE-122: Heap-based Buffer Overflow •
CVE-2024-29012
https://notcve.org/view.php?id=CVE-2024-29012
Stack-based buffer overflow vulnerability in the SonicOS HTTP server allows an authenticated remote attacker to cause Denial of Service (DoS) via sscanf function. Una vulnerabilidad de desbordamiento de búfer basada en pila en el servidor HTTP de SonicOS permite que un atacante remoto autenticado provoque una denegación de servicio (DoS) a través de la función sscanf. • https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2024-0008 • CWE-121: Stack-based Buffer Overflow •
CVE-2022-44593 – WordPress Solid Security plugin <= 9.3.1 - IP Spoofing Leading to Denial of Service vulnerability
https://notcve.org/view.php?id=CVE-2022-44593
El uso de la vulnerabilidad de fuente menos confiable en SolidWP Solid Security permite HTTP DoS. Este problema afecta a Solid Security: desde n/a hasta 9.3.1. ... This makes it possible for unauthenticated attackers to perform a denial of service attack. • https://patchstack.com/database/vulnerability/better-wp-security/wordpress-solid-security-plugin-9-3-1-ip-spoofing-leading-to-denial-of-service-vulnerability? • CWE-345: Insufficient Verification of Data Authenticity CWE-348: Use of Less Trusted Source •