CVE-2000-1025: Medium severity Unify eWave ServletExec vulnerability
Published Nov 29, 2000
·Updated
eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that contains the "/servlet/" string, which invokes the ServletExec servlet and causes an exception if the servlet is already running.
Affected Software
1 affected component
Unify eWave ServletExec=3.0c
Remediation
Patch Available
Event History
Nov 29, 2000
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-1025?
CVE-2000-1025 has a low severity rating as it primarily causes a denial of service.
2
How do I fix CVE-2000-1025?
To fix CVE-2000-1025, upgrade to a later version of the eWave ServletExec that is not vulnerable.
3
What versions are affected by CVE-2000-1025?
CVE-2000-1025 affects eWave ServletExec version 3.0C and earlier.
4
What type of vulnerability is CVE-2000-1025?
CVE-2000-1025 is categorized as a denial of service vulnerability.
5
What impact does CVE-2000-1025 have on systems?
CVE-2000-1025 may cause the servlet engine to become unresponsive when accessed in a specific manner.