Summary</B>NetworkActiv Web Server is a "simple and easy to use web server (HTTP server)". $ m h: `$ ^& a n& r! m + Z8 \4 \5 h. ?0 t* gA remote user can supply an HTTP GET request with the %25 [%] string to server, causing it to consume all available CPU resources. / j" O1 F; g- K; ~4 p# _' S9 Z' a) p) T7 b6 O! |2 f
Details</B><B>Vulnerable Systems:</B> 9 Y5 H2 V: B* J9 f$ T * NetworkActiv Web Server 1.0 prior to 28 September 2004 2 B4 c R2 H- m4 ]3 _/ u8 P ' D8 `0 {+ v) E# e<B>Immune Systems:</B>4 B0 k" ^9 z, y. g5 p; E- [7 X
* NetworkActiv Web Server 1.0 after 28 September 2004. \. ^/ M! e, C: v8 q
, {- @5 F1 Y+ E2 y5 C* E
<B>Vendor response:</B> # r, E4 |. ~0 ?" z2 BThe vendor has issued a fix to prevent the vulnerability from happening.1 P' o2 e) e j- A
6 F+ i9 e5 O3 g1 P3 r
Additional information</B>The information has been provided by GSS IT.