Summary</B>NetworkActiv Web Server is a "simple and easy to use web server (HTTP server)".& A0 }! y; {& }9 Y
) i+ w- m9 L; |; c* h5 x) y
A remote user can supply an HTTP GET request with the %25 [%] string to server, causing it to consume all available CPU resources.$ P# i5 c5 @, D6 h. X
% C" G4 B$ W5 {5 f7 d Details</B><B>Vulnerable Systems:</B>9 t) W* R6 N7 A2 N7 s2 _% C
* NetworkActiv Web Server 1.0 prior to 28 September 2004 L: S0 D( K8 N/ {: w8 C- J" N7 L* n+ C
<B>Immune Systems:</B> ' l; e/ C8 S8 S" B' ]/ ? * NetworkActiv Web Server 1.0 after 28 September 2004 7 R) Q# I7 b3 ] y6 b9 N1 [( K$ j& ?3 ~+ o* P" P, U
<B>Vendor response:</B> 5 e& q: t* I9 f6 I9 H' i7 x( Q( S aThe vendor has issued a fix to prevent the vulnerability from happening. 6 {( |9 q' {! O, ~6 W6 |) s2 ~ % B7 u% d' N3 z/ c Additional information</B>The information has been provided by GSS IT.