Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2023-24998
Description:Apache Commons FileUpload before 1.5 does not limit the number of request parts to be processed resulting in the possibility of an attacker triggering a DoS with a malicious upload or series of uploads. Note that, like all of the file upload limits, the new configuration option (FileUploadBase#setFileCountMax) is not enabled by default and must be explicitly configured.
Test IDs: 1.3.6.1.4.1.25623.1.1.4.2023.2318.1   1.3.6.1.4.1.25623.1.0.104551   1.3.6.1.4.1.25623.1.1.4.2023.0695.1   1.3.6.1.4.1.25623.1.1.2.2023.2177   1.3.6.1.4.1.25623.1.1.4.2023.2390.1   1.3.6.1.4.1.25623.1.1.4.2023.2504.1   1.3.6.1.4.1.25623.1.0.104754   1.3.6.1.4.1.25623.1.1.1.1.2023.5522   1.3.6.1.4.1.25623.1.0.104550   1.3.6.1.4.1.25623.1.1.4.2023.0697.1   1.3.6.1.4.1.25623.1.1.10.2023.0070   1.3.6.1.4.1.25623.1.1.4.2023.2319.1   1.3.6.1.4.1.25623.1.1.2.2023.1612   1.3.6.1.4.1.25623.1.0.104755   1.3.6.1.4.1.25623.1.1.1.2.2023.3617   1.3.6.1.4.1.25623.1.0.104652   1.3.6.1.4.1.25623.1.1.4.2023.2505.1   1.3.6.1.4.1.25623.1.1.10.2023.0191   1.3.6.1.4.1.25623.1.1.4.2023.0696.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2023-24998
Debian Security Information: DSA-5522 (Google Search)
https://www.debian.org/security/2023/dsa-5522
https://security.gentoo.org/glsa/202305-37
https://lists.apache.org/thread/4xl4l09mhwg4vgsk7dxqogcjrobrrdoy
https://lists.apache.org/thread/4xl4l09mhwg4vgsk7dxqogcjrobrrdoy
https://lists.debian.org/debian-lts-announce/2023/10/msg00020.html
http://www.openwall.com/lists/oss-security/2023/05/22/1




© 1998-2025 E-Soft Inc. All rights reserved.