20001030 Unify eWave ServletExec DoSmailing list
http://marc.info/?l=bugtraq&m=97295224226042&w=2 CVE-2000-1025
Unify eWave ServletExec 3.0 c - Denial of Service
Record summary
CVE-2000-1025 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that contains the "/servlet/" string, which invokes the ServletExec servlet and causes an exception if the servlet is already running.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBUnify eWave ServletExec 3.0 c - Denial of ServiceExploitDB exploitby Foundstone LabsNot analyzed1 file
References
41868vdb entry
http://www.securityfocus.com/bid/1868 ewave-servletexec-dos(5435)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/5435 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2000-1025