7.5
CVE-2001-1315
- EPSS 4.34%
- Veröffentlicht 16.07.2001 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:56:01
- Erkennungen
Critical Path (1) InJoin Directory Server or (2) LiveContent Directory allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via malformed BER encodings, as demonstrated by the PROTOS LDAPv3 test suite.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Critical Path ≫ Injoin Directory Server Version 2.0
Critical Path ≫ Injoin Directory Server Version 2.1
Critical Path ≫ Injoin Directory Server Version 3.0
Critical Path ≫ Injoin Directory Server Version 3.1
Critical Path ≫ Injoin Directory Server Version 4.0
Critical Path ≫ Livecontent Directory Version 8a3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.34% | 0.899 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://www.cert.org/advisories/CA-2001-18.html
http://www.ee.oulu.fi/research/ouspg/protos/testing/c06/ldapv3/
http://ciac.llnl.gov/ciac/bulletins/l-116.shtml
http://archives.neohapsis.com/archives/bugtraq/2001-07/0770.html
http://www.kb.cert.org/vuls/id/657547
http://www.kb.cert.org/vuls/id/JPLA-4ZKLEM