Summary</B>NetworkActiv Web Server is a "simple and easy to use web server (HTTP server)". # R$ c, U0 D+ {% H0 c0 m% Z; ~8 k- e+ r/ i9 _ Y
A remote user can supply an HTTP GET request with the %25 [%] string to server, causing it to consume all available CPU resources. 8 M6 ` B9 J: @. K% t5 @. E- A, }* g! d
Details</B><B>Vulnerable Systems:</B>+ Y% `0 c1 O# G5 n/ o( K
* NetworkActiv Web Server 1.0 prior to 28 September 2004 ' J' _# S& Y- a: T3 h5 y$ X/ g9 g- L0 X8 O
<B>Immune Systems:</B> ! ^" g7 r+ x! W" I, p8 e( m3 M% ?9 v * NetworkActiv Web Server 1.0 after 28 September 2004 ' {: t) O: f6 I" M2 P& c( \ S1 r- s) v$ ^7 n* m' R. k3 {" ^) E
<B>Vendor response:</B>- ?" S ?! \* C5 L- J
The vendor has issued a fix to prevent the vulnerability from happening. 9 Q) U# d0 n( K) d |% O6 Y) S! ^7 y' u/ Q
Additional information</B>The information has been provided by GSS IT.