Apache Commons FileUpload Denial of Service Vulnerability
Description
Apache Commons FileUpload versions before 1.5 lack a limit on request parts, allowing attackers to trigger a denial-of-service via malicious uploads; the new FileUploadBase#setFileCountMax option is disabled by default.
Affected Applications
Apache Commons FileUpload