PoC Exploit Released For Critical Windows LDAP RCE Vulnerability
ID: 32bee987-ab8e-5f69-8563-14aaa6009f1e
STIX ID: report--32bee987-ab8e-5f69-8563-14aaa6009f1e
Feed Name: GBHackers
**Executive Summary:** The report details CVE-2024-49112, a critical zero-click remote code execution vulnerability in Windows LDAP (wldap32.dll) that enables unauthenticated attackers to force Domain Controllers and other unpatched Windows Servers to process malicious LDAP referrals via DNS/SRV redirection, causing memory corruption and potential arbitrary code execution; proof-of-concept exploitation has been demonstrated and mitigations include patching and detecting suspicious LDAP referrals and related system calls.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
