Описание
iPlanet Directory Server 4.1.4 and earlier (LDAP) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via invalid BER length of length fields, as demonstrated by the PROTOS LDAPv3 test suite.
Ссылки
- Vendor Advisory
- PatchThird Party AdvisoryUS Government Resource
- Third Party AdvisoryUS Government Resource
- US Government Resource
- Vendor Advisory
- PatchThird Party AdvisoryUS Government Resource
- Third Party AdvisoryUS Government Resource
- US Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 4.1.4 (включая)
cpe:2.3:a:sun:iplanet_directory_server:*:*:*:*:*:*:*:*
EPSS
Процентиль: 92%
0.08058
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
iPlanet Directory Server 4.1.4 and earlier (LDAP) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via invalid BER length of length fields, as demonstrated by the PROTOS LDAPv3 test suite.
EPSS
Процентиль: 92%
0.08058
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other