Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

CWE-399 (资源管理错误) — Vulnerability Class 158

158 vulnerabilities classified as CWE-399 (资源管理错误). AI Chinese analysis included.

This page provides a comprehensive aggregation of vulnerabilities associated with the weakness type CWE-399, often referred to as Performance Optimization Issues. It systematically collects and organizes security data affecting various vendors, products, and software categories where inefficient code or resource management leads to operational degradation or denial of service conditions. The dataset covers historical records spanning several years, capturing the evolution of these performance-related flaws as they have been identified, disclosed, and patched across the software ecosystem. By centralizing this information, the page serves as a critical resource for security professionals, developers, and system administrators who need to assess the impact of suboptimal performance configurations on overall system stability. Visitors can track vendor advisories related to performance bottlenecks, understand the broader context of the CWE-399 weakness class within common programming paradigms, and look up specific products to review their vulnerability history regarding resource exhaustion, memory leaks, or excessive CPU usage. This structured approach allows users to identify patterns in how performance issues are reported and resolved over time. The content is intended for technical analysis rather than general awareness, focusing on the mechanistic aspects of how poor optimization results in exploitable conditions. It does not provide mitigation strategies directly but offers the foundational data necessary for deeper investigation into source code efficiency and architectural design choices. Users are encouraged to cross-reference this data with official vendor statements and detailed technical disclosures to gain a complete understanding of the risks involved.

CVE IDTitleCVSSSeverityPublished
CVE-2024-58113 Huawei HarmonyOS 安全漏洞 — HarmonyOS 5.3 Medium2025-04-07
CVE-2024-20407 Cisco Firepower Threat Defense 安全漏洞 — Cisco Firepower Threat Defense Software 5.8 Medium2024-10-23
CVE-2024-20467 Cisco IOS XE Software 安全漏洞 — Cisco IOS XE Software 8.6 High2024-09-25
CVE-2023-29267 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.3 Medium2024-06-12
CVE-2022-43855 IBM SPSS Statistics denial of service — SPSS Statistics 6.2 Medium2024-03-08
CVE-2023-20262 Cisco Catalyst SD-WAN Manager 安全漏洞 — Cisco SD-WAN Solution 5.3 Medium2023-09-27
CVE-2023-20243 Cisco Identity Services Engine 安全漏洞 — Cisco Identity Services Engine Software 8.6 High2023-09-06
CVE-2023-20014 Cisco Nexus Dashboard 资源管理错误漏洞 — Cisco Nexus Dashboard 7.5 High2023-02-16
CVE-2022-43380 IBM AIX denial of service — AIX 6.2 Medium2022-12-23
CVE-2022-43381 IBM AIX denial of service — AIX 6.2 Medium2022-12-23
CVE-2022-43382 IBM AIX denial of service — AIX 6.2 Medium2022-12-20
CVE-2022-20949 Cisco Firepower Threat Defense 安全漏洞 — Cisco Firepower Threat Defense Software 6.5 Medium2022-11-10
CVE-2022-20848 Cisco IOS XE Software for Embedded Wireless Controllers on Catalyst 9100 Series Access Points UDP Processing Denial of Service Vulnerability — Cisco IOS XE Software 8.6 High2022-09-30
CVE-2022-20847 Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family DHCP Processing Denial of Service Vulnerability — Cisco IOS XE Software 8.6 High2022-09-30
CVE-2022-20771 ClamAV TIFF File Parsing Denial of Service Vulnerability Affecting Cisco Products: April 2022 — Cisco AMP for Endpoints 7.5 High2022-05-04
CVE-2022-20770 ClamAV CHM File Parsing Denial of Service Vulnerability Affecting Cisco Products: April 2022 — Cisco AMP for Endpoints 8.6 High2022-05-04
CVE-2022-20715 Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Remote Access SSL VPN Denial of Service Vulnerability — Cisco Adaptive Security Appliance (ASA) Software 8.6 High2022-05-03
CVE-2022-20767 Cisco Firepower Threat Defense Software DNS Enforcement Denial of Service Vulnerability — Cisco Firepower Threat Defense Software 8.6 High2022-05-03
CVE-2022-20758 Cisco IOS XR Software Border Gateway Protocol Ethernet VPN Denial of Service Vulnerability — Cisco IOS XR Software 6.8 Medium2022-04-15
CVE-2022-20756 Cisco Identity Services Engine RADIUS Service Denial of Service Vulnerability — Cisco Identity Services Engine Software 8.6 High2022-04-06
CVE-2022-20623 Cisco Nexus 9000 Series Switches Bidirectional Forwarding Detection Denial of Service Vulnerability — Cisco NX-OS Software 8.6 High2022-02-23
CVE-2022-20625 Cisco FXOS and NX-OS Software Cisco Discovery Protocol Service Denial of Service Vulnerability — Cisco NX-OS Software 4.3 Medium2022-02-23
CVE-2022-20653 Cisco Email Security Appliance DNS Verification Denial of Service Vulnerability — Cisco Email Security Appliance (ESA) 7.5 High2022-02-17
CVE-2021-40122 Cisco Meeting Server Call Bridge Denial of Service Vulnerability — Cisco Meeting Server 5.9 Medium2021-10-21
CVE-2021-1621 Cisco IOS XE Software Interface Queue Wedge Denial of Service Vulnerability — Cisco IOS XE Software 7.4 High2021-09-23
CVE-2021-1611 Cisco IOS XE Software for Catalyst 9800 Series Wireless Controllers EoGRE Denial of Service Vulnerability — Cisco IOS XE Software 8.6 High2021-09-23
CVE-2021-1624 Cisco IOS XE Software Rate Limiting Network Address Translation Denial of Service Vulnerability — Cisco IOS XE Software 8.6 High2021-09-23
CVE-2021-1623 Cisco IOS XE Software for Cisco cBR-8 Converged Broadband Routers Simple Network Management Protocol Denial of Service Vulnerability — Cisco IOS XE Software 7.7 High2021-09-23
CVE-2021-34713 Cisco IOS XR Software for ASR 9000 Series Routers Denial of Service Vulnerability — Cisco IOS XR Software 7.4 High2021-09-09
CVE-2021-1569 Cisco Jabber Desktop and Mobile Client Software Vulnerabilities — Cisco Jabber 6.5 Medium2021-06-16

Vulnerabilities classified as CWE-399 (资源管理错误) represent 158 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.