VULNERABILITY INTELLIGENCE

CVE-2001-1306

CVSS score7.5 HIGH
EPSS probability4.07%
CISA KEVNot currently listed
Published2001-07-16
Last modified2026-06-16

Description

iPlanet Directory Server 4.1.4 and earlier (LDAP) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via invalid BER length of length fields, as demonstrated by the PROTOS LDAPv3 test suite.