CVE-2014-0109

EPSS 6.1%

Uncontrolled Resource Consumption in Apache CXF

Published: 5/13/2022Modified: 12/21/2023
Also known as:GHSA-5wqf-h3r3-gxvh

Description

Apache CXF before 2.6.14 and 2.7.x before 2.7.11 allows remote attackers to cause a denial of service (memory consumption) via a large request with the Content-Type set to text/html to a SOAP endpoint, which triggers an error.

Affected packages (1)

References (14)