First published: Wed Nov 29 2000(Updated: )
eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that contains the "/servlet/" string, which invokes the ServletExec servlet and causes an exception if the servlet is already running.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Unify eWave ServletExec | =3.0c |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-1025 has a low severity rating as it primarily causes a denial of service.
To fix CVE-2000-1025, upgrade to a later version of the eWave ServletExec that is not vulnerable.
CVE-2000-1025 affects eWave ServletExec version 3.0C and earlier.
CVE-2000-1025 is categorized as a denial of service vulnerability.
CVE-2000-1025 may cause the servlet engine to become unresponsive when accessed in a specific manner.