Summary</B>NetworkActiv Web Server is a "simple and easy to use web server (HTTP server)". ' j* w0 {, V; c6 y8 \* A& r; }2 `$ ]5 r1 f
A remote user can supply an HTTP GET request with the %25 [%] string to server, causing it to consume all available CPU resources. ( ]$ I. r" Q/ x0 ]6 P * _+ V* _9 |3 q1 H6 y& D Details</B><B>Vulnerable Systems:</B> " D( K$ w/ J; B6 K2 o * NetworkActiv Web Server 1.0 prior to 28 September 2004 & G8 h, f0 q) e @( P/ b$ d D# y" I) G9 [5 r4 _1 X/ p, a2 P
<B>Immune Systems:</B># b' I- W. n4 |# E- r `
* NetworkActiv Web Server 1.0 after 28 September 2004' u2 N$ u) N3 E% H8 c& c
+ ^) h, T- P4 q0 `, J
<B>Vendor response:</B> U0 ?. \9 c9 d3 r7 h
The vendor has issued a fix to prevent the vulnerability from happening.) \3 g0 L- G9 W3 ?3 p: G
+ H; l. ?0 j! u6 z+ B7 ]: N$ ]+ g% B Additional information</B>The information has been provided by GSS IT.