vendor:
Windows 2000
by:
Bugweek
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: Windows 2000
Affected Version From: Microsoft Windows 2000
Affected Version To: Microsoft Windows 2000
Patch Exists: YES
Related CWE: N/A
CPE: o:microsoft:windows_2000
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2002
Microsoft Windows 2000 Active Directory Denial of Service Vulnerability
An unauthenticated attacker could exploit this vulnerability by transmitting a malformed LDAP version 3 request to a target Microsoft Windows 2000 server. When the request is processed, an exception will be triggered effectively causing the target server to crash.
Mitigation:
Ensure that all systems are running the latest version of Microsoft Windows 2000 and that all security patches have been applied.