CVE-2021-36310
20.11.2021, 02:15
Dell Networking OS10, versions 10.4.3.x, 10.5.0.x, 10.5.1.x & 10.5.2.x, contain an uncontrolled resource consumption flaw in its API service. A high-privileged API user may potentially exploit this vulnerability, leading to a denial of service.Enginsight
Vendor | Product | Version |
---|---|---|
dell | networking_os10 | 𝑥 < 10.4.3.8 |
dell | networking_os10 | 10.5.0.0 ≤ 𝑥 < 10.5.0.10 |
dell | networking_os10 | 10.5.1.0 ≤ 𝑥 < 10.5.1.10 |
dell | networking_os10 | 10.5.2.0 ≤ 𝑥 < 10.5.2.8 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-693 - Protection Mechanism FailureThe product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.
- CWE-400 - Uncontrolled Resource ConsumptionThe software does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.