Summary</B>NetworkActiv Web Server is a "simple and easy to use web server (HTTP server)". & ? Z: p* d( W4 j$ M/ R$ d( s4 s7 `/ _: N5 L' l% z9 a
A remote user can supply an HTTP GET request with the %25 [%] string to server, causing it to consume all available CPU resources. 4 ^' q7 q- X) O# q3 V+ ]" K" B8 _8 \, |3 ?& n- ], [5 ?8 x4 w: _
Details</B><B>Vulnerable Systems:</B>. x, E( H) X5 r7 K8 v& a
* NetworkActiv Web Server 1.0 prior to 28 September 2004 G/ c4 [! M. K6 c3 c: J% }" O
<B>Immune Systems:</B>% n. u6 @" K% e
* NetworkActiv Web Server 1.0 after 28 September 2004 # x( c+ u" W) o! K+ C" s1 h- u3 {+ G# |7 |% n
<B>Vendor response:</B>! A/ \/ s% i8 v) S
The vendor has issued a fix to prevent the vulnerability from happening. ( u$ N( n% d! @ 4 x4 \9 p$ c2 |( i! F Additional information</B>The information has been provided by GSS IT.