PT-2017-2010 · Microsoft · Windows
Published
2017-04-11
·
Updated
2019-10-03
·
CVE-2017-0166
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Windows (affected versions not specified)
Description
The issue is related to an elevation of privilege vulnerability in Windows, specifically concerning the improper calculation of LDAP request buffer lengths. This could be exploited by an attacker running a specially crafted application to send malicious traffic to a Domain Controller, potentially allowing the attacker to elevate their privileges.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Windows