Summary</B>NetworkActiv Web Server is a "simple and easy to use web server (HTTP server)".% l. }* B% T3 U% u8 H V
, ?3 _; n- W* ^: p2 l. k
A remote user can supply an HTTP GET request with the %25 [%] string to server, causing it to consume all available CPU resources. " g1 s9 P6 e7 j' M3 e5 B$ H* ~ + x5 J6 l: z' F/ W( g) N# k* T/ s Details</B><B>Vulnerable Systems:</B> * k* V- u% Q1 `; U * NetworkActiv Web Server 1.0 prior to 28 September 2004+ z+ x9 ^2 q8 S6 Z
; D) |" o/ \& {2 y3 @; ?3 V
<B>Immune Systems:</B>8 g1 @. d9 R0 \5 z0 C- P
* NetworkActiv Web Server 1.0 after 28 September 2004 1 h- ?: v# b5 C. l5 l d. h6 }+ f5 Y+ _8 @8 j
<B>Vendor response:</B> " q9 i/ b2 r2 |4 n9 {0 B+ h0 kThe vendor has issued a fix to prevent the vulnerability from happening. - f: o% K0 N ~ ]: o T9 X5 p9 h4 J
Additional information</B>The information has been provided by GSS IT.