Metrics
Affected Vendors & Products
Wed, 02 Jul 2025 18:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Apache
Apache commons Fileupload |
|
CPEs | cpe:2.3:a:apache:commons_fileupload:*:*:*:*:*:*:*:* cpe:2.3:a:apache:commons_fileupload:2.0.0:m1-rc1:*:*:*:*:*:* cpe:2.3:a:apache:commons_fileupload:2.0.0:m2-rc1:*:*:*:*:*:* cpe:2.3:a:apache:commons_fileupload:2.0.0:m2:*:*:*:*:*:* cpe:2.3:a:apache:commons_fileupload:2.0.0:m3-rc1:*:*:*:*:*:* cpe:2.3:a:apache:commons_fileupload:2.0.0:m3:*:*:*:*:*:* cpe:2.3:a:apache:commons_fileupload:2.0.0:m4-rc1:*:*:*:*:*:* cpe:2.3:a:apache:commons_fileupload:2.0.0:m4:*:*:*:*:*:* cpe:2.3:a:apache:commons_fileupload:2.0.0:rc1:*:*:*:*:*:* |
|
Vendors & Products |
Apache
Apache commons Fileupload |
Tue, 17 Jun 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
ssvc
|
Tue, 17 Jun 2025 04:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-770 | |
References |
| |
Metrics |
threat_severity
|
cvssV3_1
|
Mon, 16 Jun 2025 20:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Mon, 16 Jun 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Allocation of resources for multipart headers with insufficient limits enabled a DoS vulnerability in Apache Commons FileUpload. This issue affects Apache Commons FileUpload: from 1.0 before 1.6; from 2.0.0-M1 before 2.0.0-M4. Users are recommended to upgrade to versions 1.6 or 2.0.0-M4, which fix the issue. | |
Title | Apache Commons FileUpload, Apache Commons FileUpload: FileUpload DoS via part headers | |
References |
|

Status: PUBLISHED
Assigner: apache
Published: 2025-06-16T15:00:48.140Z
Updated: 2025-06-17T14:07:34.067Z
Reserved: 2025-05-29T07:19:14.431Z
Link: CVE-2025-48976

Updated: 2025-06-17T14:05:58.653Z

Status : Analyzed
Published: 2025-06-16T15:15:24.460
Modified: 2025-07-02T18:29:35.560
Link: CVE-2025-48976
