Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The LDAP client on Microsoft Windows 2000 before Update Rollup 1 for SP4 accepts certificates using LDAP Secure Sockets Layer (LDAPS) even when the Certificate Authority (CA) is not trusted, which could allow attackers to trick users into believing that they are accessing a trusted site.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Micorsoft windows 2000 Sp4 累积更新包 证书授权欺骗漏洞
Vulnerability Description
Windows 2000(也可简称Win2K,是微软公司设计的一个独占式、可中断运行、具有图形用户界面(GUI)和商业导向的操作系统 Microsoft Windows 2000 SP4 Update Rollup 1之前版本的LDAP客户端在证书授权(CA)不可信的情况下,仍使用LDAP Secure Sockets Layer (LDAPS)接受证书。这会使攻击者哄骗用户相信自己访问的是可信站点。
CVSS Information
N/A
Vulnerability Type
N/A