CVE-2025-13826: Zervit Portable Http/web Server
High severity, CVSS 8.2. EPSS: 0.3% chance of exploitation in the next 30 days.
Zervit's portable HTTP/web server is vulnerable to remote DoS attacks when a configuration reset request is made. The vulnerability is caused by inadequate validation of user-supplied input. An attacker can exploit this vulnerability by sending malicious requests. If the vulnerability is successfully exploited, the application can be made to stop responding, resulting in a DoS condition. It is possible to manually restart the application.
Affected products
- Zervit Portable Http/web Server: version 0 only
Published 2026-04-21. Last modified 2026-09-30.