CVE Details
Basic Information
| Title |
CVE-2025-47947 |
| Type |
cve |
| Published |
2025-05-21T22:15:50 |
| Last Seen |
2025-05-21T22:25:45 |
CVSS Information
| Base Score |
7.5 (HIGH) |
| Attack Vector |
NETWORK |
| Attack Complexity |
LOW |
| Privileges Required |
NONE |
| User Interaction |
NONE |
| Scope |
UNCHANGED |
| Confidentiality Impact |
NONE |
| Integrity Impact |
NONE |
| Availability Impact |
HIGH |
AI Analysis
| AI Description |
ModSecurity versions up to 2.9.8 are vulnerable to a denial-of-service (DoS) attack in specific cases, potentially leading to service unavailability. |
| AI Severity |
High |
| Vendor |
Apache Foundation |
| Product |
ModSecurity |
| Affected Version |
2.9.8 |
Additional Information
| CVE List |
CVE-2025-47947 |
| CWE List |
CWE-1050 |
| Bulletin Family |
cve |
Description
ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. Versions up to and including 2.9.8 are vulnerable to denial of service in one special case (in…
CVSS Score Summary
Base Score: %!f(string=#) (HIGH)
View Full CVE Details