NVD
- Id
- 28995
- Name
- CVE-2014-0050
- Description
- MultipartStream.java in Apache Commons FileUpload before 1.3.1, as used in Apache Tomcat, JBoss Web, and other products, allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted Content-Type header that bypasses a loop"s intended exit conditions.
- Reject
- CVSS Version
- 2
- CVSS Score
- 7.5
- Severity
- High
- CVSS Base Score
- 7.5
- CVSS Impact Subscore
- 6.4
- CVSS Exploit Subscore
- 10
- CVSS Vector
- (AV:N/AC:L/Au:N/C:P/I:P/A:P)
- Pub Date
- 2017-01-19
- Published
- 2014-04-01
- Modified Date
- 2017-01-06
- Seq
- 2014-0050
Related NVD References
Related JVN
Id | Name | Title | Summary | Cveinfo Name | Cveinfo Id | Nvdinfo Name | Nvdinfo Id | Cvssv2 | Cvssv3 | Jvnurl | Published Date | Last Updated Date | Actions |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
12001 | JVNDB-2014-000017 | Apache Commons FileUpload におけるサービス運用妨害 (DoS) の脆弱性 | Apache Commons FileUpload には、サービス運用妨害 (DoS) の脆弱性が存在します。 | CVE-2014-0050 | 67451 | CVE-2014-0050 | 28995 | 5 | http://jvndb.jvn.jp/ja/contents/2014/JVNDB-2014-000017.html | 2014-02-10 | 2016-11-22 | View |