Summary</B>NetworkActiv Web Server is a "simple and easy to use web server (HTTP server)".- F9 C, U, l0 `4 G1 g1 h
) v5 _+ Z+ k. }* ?
A remote user can supply an HTTP GET request with the %25 [%] string to server, causing it to consume all available CPU resources. 9 W' F. s8 y# Y5 f# @ W' ]3 L% t K
Details</B><B>Vulnerable Systems:</B>3 U6 P. U4 o3 V' i# x U0 d
* NetworkActiv Web Server 1.0 prior to 28 September 2004 ( D- \. T* ?' C! {/ G5 \% w7 O4 @- ]: e, n1 L0 Q! o" O
<B>Immune Systems:</B>. M$ C# K6 K) w6 Y- L2 N) Z
* NetworkActiv Web Server 1.0 after 28 September 2004 ! R/ s! M, D/ w- ^4 S, Z W$ T5 ? # M( X/ M# g$ \0 c0 A4 v<B>Vendor response:</B>2 w c7 e& X& {
The vendor has issued a fix to prevent the vulnerability from happening. 3 K1 C+ g [4 }) c! f5 Y, H- ]$ {$ X5 q) O: t1 U8 f
Additional information</B>The information has been provided by GSS IT.