logo

PoC Exploit Released For Critical Windows LDAP RCE Vulnerability

ID: 32bee987-ab8e-5f69-8563-14aaa6009f1e

STIX ID: report--32bee987-ab8e-5f69-8563-14aaa6009f1e

Feed Name: GBHackers

Threat Score
85/100

Date Published: 2025-01-02

Date Updated: 2026-04-22

Author: Aman Mishra

...
...

**Executive Summary:** The report details CVE-2024-49112, a critical zero-click remote code execution vulnerability in Windows LDAP (wldap32.dll) that enables unauthenticated attackers to force Domain Controllers and other unpatched Windows Servers to process malicious LDAP referrals via DNS/SRV redirection, causing memory corruption and potential arbitrary code execution; proof-of-concept exploitation has been demonstrated and mitigations include patching and detecting suspicious LDAP referrals and related system calls.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.