Lightweight Directory Access Protocol (LDAP) Client Remote Code Execution Vulnerability
CVE-2024-49124
Key Information:
- Vendor
- Microsoft
- Status
- Windows 10 Version 1809
- Windows Server 2019
- Windows Server 2019 (server Core Installation)
- Windows Server 2022
- Vendor
- CVE Published:
- 12 December 2024
Summary
The vulnerability in the Lightweight Directory Access Protocol (LDAP) Client allows for remote code execution, posing significant security risks for systems implementing this protocol. This flaw could enable an attacker to execute arbitrary code on affected systems, leading to potential data breaches or unauthorized access. Organizations using the LDAP Client must evaluate their systems and apply necessary patches or mitigate strategies outlined in the vendor advisory to safeguard against exploitation.
Affected Version(s)
Windows 10 Version 1507 32-bit Systems 10.0.10240.0 < 10.0.10240.20857
Windows 10 Version 1607 32-bit Systems 10.0.14393.0 < 10.0.14393.7606
Windows 10 Version 1809 32-bit Systems 10.0.17763.0 < 10.0.17763.6659
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved