PT-2023-1023 · Microsoft · Windows

Published

2023-01-10

·

Updated

2023-04-27

·

CVE-2023-21676

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Windows Lightweight Directory Access Protocol (LDAP) (affected versions not specified)
Description The issue is related to the implementation of the Lightweight Directory Access Protocol (LDAP) in Microsoft Windows, specifically due to insufficient input validation. This can be exploited by a remote attacker using specially crafted data to execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2023-00114
CVE-2023-21676

Affected Products

Windows