CVE-2000-1025
Last modified
CVE-2000-1025 is a vulnerability of currently unknown severity. eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that contains the "/servlet/" string, which invokes the ServletExec servlet and causes an exception if the servlet is already running.. EPSS estimates a 8.49% chance of exploitation in the next 30 days.
Description
eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that contains the "/servlet/" string, which invokes the ServletExec servlet and causes an exception if the servlet is already running.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Unify | Ewave Servletexec | 3.0c |
References
- http://www.securityfocus.com/bid/1868Exploit, Patch, Vendor Advisory
- http://www.securityfocus.com/bid/1868Exploit, Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2000-1025?
How severe is CVE-2000-1025?
How do I fix CVE-2000-1025?
Are you affected by CVE-2000-1025?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
