Summary</B>NetworkActiv Web Server is a "simple and easy to use web server (HTTP server)". }- ~' x3 }1 ]. j9 `% Y5 @, p6 v
9 s, b8 f! H7 v! `4 A/ Y$ gA remote user can supply an HTTP GET request with the %25 [%] string to server, causing it to consume all available CPU resources. * ?5 m" ~$ U* W' @2 U$ w" j$ s# M / |& _, x* y2 r2 O# M: s Details</B><B>Vulnerable Systems:</B>- }( k! d( G9 O0 I- ^5 Y( h
* NetworkActiv Web Server 1.0 prior to 28 September 2004" ?. E( H4 c8 c+ Q
9 |, t2 D4 P" S# j6 v7 c, k. X
<B>Immune Systems:</B> % N( ^1 V+ a! x5 m( Z! S3 Z2 X * NetworkActiv Web Server 1.0 after 28 September 20042 q1 [0 _) z* T: @
/ w9 {- ~5 e% y2 v" v<B>Vendor response:</B>- ?% y( V5 F# H
The vendor has issued a fix to prevent the vulnerability from happening.6 \! j) M: U5 M3 a! o9 o
' E' K* W3 g$ J
Additional information</B>The information has been provided by GSS IT.