Exploiting LDAPNightmare PoC causes LSASS to crash and reboot Windows Domain Controllers
An exploit showcasing a proof-of-concept (PoC) has surfaced targeting a previously patched vulnerability affecting Windows Lightweight Directory Access Protocol (LDAP), which has the potential to initiate a denial-of-service (DoS) scenario. The security loophole involving out-of-bounds reads has been identified as CVE-2024-49113 (CVSS score: 7.5). Microsoft addressed this issue within the December 2024 Patch Tuesday updates, along with CVE-2024-49112 (
