Security Advisory

CVE-2025-13826

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-04-21 08:19:57
Last updated 2026-04-21 13:23:30
Assigner INCIBE
CVSS score 8.2
State PUBLISHED

Description

Zervit's portable HTTP/web server is vulnerable to remote DoS attacks when a configuration reset request is made. The vulnerability is caused by inadequate validation of user-supplied input. An attacker can exploit this vulnerability by sending malicious requests. If the vulnerability is successfully exploited, the application can be made to stop responding, resulting in a DoS condition. It is possible to manually restart the application.