Microsoft Active Directory Zero Page...

- AV AC AU C I A
发布: 2002-05-23
修订: 2025-04-13

Microsoft Active Directory is reportedly vulnerable to a query that will result in Active Directory to cease responding. The vulnerability has been reported for querying Active Directory servers using Kerberos V authentication via GSS-API. A LDAP client is able to specify the number of entries to be retrieved by setting a page length to a smaller number. The reported vulnerability occurs when the page length value is set to zero and the client makes a large request. Such a request will cause the vulnerable Active Directory server to hang causing a denial of service to occur.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息