159 vulnerabilities classified as CWE-399 (资源管理错误). AI Chinese analysis included.
This page is a vulnerability aggregation resource dedicated to the weakness type CWE-399, commonly known as Resource Exhaustion or Denial of Service. It collects and categorizes security flaws that allow attackers to consume sufficient system resources to render services unavailable to legitimate users. The dataset encompasses reported vulnerabilities spanning from the early 2000s to the present day, reflecting the evolving landscape of denial-of-service exploits across various software architectures. By centralizing this information, the page enables researchers and security professionals to track a specific vendor’s historical advisory patterns and identify recurring failure modes in their product lines. Users can also gain a deeper understanding of the CWE-399 weakness class by analyzing how different implementations fail to manage limits, timeouts, or connections effectively. Furthermore, individuals can look up a particular product’s vulnerability history to assess its resilience against resource exhaustion attacks over time. This structured approach facilitates proactive risk management and informed patch prioritization. The content is organized to highlight relationships between product components and specific resource types, such as memory, CPU, or file descriptors, providing context for impact assessment. All entries are derived from verified public disclosures and vendor notifications, ensuring reliability. This resource serves as a comprehensive reference for understanding the scope and severity of denial-of-service weaknesses in modern software ecosystems. It supports security audits, penetration testing planning, and the development of more robust defensive mechanisms against resource-based attacks.
Vulnerabilities classified as CWE-399 (资源管理错误) represent 159 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.