Summary</B>NetworkActiv Web Server is a "simple and easy to use web server (HTTP server)". " ~3 T7 g" Q0 K5 w0 z( `" u) j2 [5 f, P
A remote user can supply an HTTP GET request with the %25 [%] string to server, causing it to consume all available CPU resources." ^4 ?, S) g7 X. p g3 k( E
( E0 _" y5 J6 ~9 R. p. R* E. f9 W
Details</B><B>Vulnerable Systems:</B> 6 k$ ?$ ~5 l, D" N * NetworkActiv Web Server 1.0 prior to 28 September 2004- Y' S; s2 p U% F6 j
& m7 p, v' F3 s" h7 F! ]% Z<B>Immune Systems:</B> ) M6 n( P; Z) t' c0 U * NetworkActiv Web Server 1.0 after 28 September 2004 # V4 x' t. [- q2 @ ! ]% L8 r/ t8 r6 i, K<B>Vendor response:</B> 3 {, p' f/ \! O' uThe vendor has issued a fix to prevent the vulnerability from happening.. }- C T8 D! ~, x2 G: e
3 I# H7 o, ~5 t
Additional information</B>The information has been provided by GSS IT.