Skip to main content

CVE-2014-0050

7.5
CVSS v2.0 Base Score
92.71%
HIGH RiskEPSS (100th percentile)

MultipartStream.java in Apache Commons FileUpload before 1.3.1, as used in Apache Tomcat, JBoss Web, and other products, allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted Content-Type header that bypasses a loop's intended exit conditions.

Published: 4/1/2014
Modified: 5/6/2026
Back to CVE Lookup

Vulnerability Summary

CVSS v2 Score

7.5

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS Score (Exploitation Probability)

92.71%HIGH Exploitation Risk
100th percentile

This vulnerability has a 92.71% probability of being exploited in the next 30 days, ranking higher than 100% of all scored CVEs.

CWE Classification

Related Vulnerabilities