CVE Database
/

CVE-2007-3028

Back to search

CVE-2007-3028

Published: Jul 10, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

The LDAP service in Windows Active Directory in Microsoft Windows 2000 Server SP4 does not properly check "the number of convertible attributes", which allows remote attackers to cause a denial of service (service unavailability) via a crafted LDAP request, related to "client sent LDAP request logic," aka "Windows Active Directory Denial of Service Vulnerability". NOTE: this is probably a different issue than CVE-2007-0040.

VendorProductVersions

n/a

n/a

affected
n/a

References

SSRT071446
vendor-advisory
x_refsource_HP
24796
vdb-entry
x_refsource_BID
1018355
vdb-entry
x_refsource_SECTRACK
26002
third-party-advisory
x_refsource_SECUNIA
ADV-2007-2481
vdb-entry
x_refsource_VUPEN
TA07-191A
third-party-advisory
x_refsource_CERT
VU#348953
third-party-advisory
x_refsource_CERT-VN
MS07-039
vendor-advisory
x_refsource_MS
oval:org.mitre.oval:def:1856
vdb-entry
signature
x_refsource_OVAL

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now