tag
Potential-RCE
CVE-2026-41089
network
CRITICAL 9.8
EPSS 80%
Netlogon CLDAP Stack Buffer Overflow (CVE-2026-41089)
This PoC targets CVE-2026-41089, a stack-based buffer overflow in the Windows Netlogon CLDAP handling path. A crafted UDP/389 CLDAP ping containing an oversized User value can overrun a stack buffer in the LSASS/Netlogon flow and crash the domain controller.…
Patched
2026-06-04
CVE-2024-49113
network
CRITICAL
EPSS 83%
LDAP Nightmare — Windows LDAP Client RCE/DoS (CVE-2024-49113)
LDAP Nightmare is a public PoC for CVE-2024-49113, a critical vulnerability in Windows LDAP client behavior that can be reached through Netlogon workflow interactions. The PoC starts a malicious LDAP service and triggers victim-side LDAP resolution via…
Patched
2026-05-15