Vulnerabilities > CVE-2000-1025 - Unspecified vulnerability in Unify Ewave Servletexec 3.0C

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
unify
exploit available

Summary

eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that contains the "/servlet/" string, which invokes the ServletExec servlet and causes an exception if the servlet is already running.

Vulnerable Configurations

Part Description Count
Application
Unify
1

Exploit-Db

descriptionUnify eWave ServletExec 3.0 c DoS Vulnerability. CVE-2000-1025. Dos exploits for multiple platform
idEDB-ID:20336
last seen2016-02-02
modified2000-10-30
published2000-10-30
reporterFoundstone Labs
sourcehttps://www.exploit-db.com/download/20336/
titleUnify eWave ServletExec 3.0 c - DoS Vulnerability