CVE Database · CVE-2003-0914
CVSS v3.1
N/A
EPSS
3.16%
Published
Dec 15, 2003
Modified
Jun 16, 2026
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live) value.
Affected Products (58)
References (16)
...and 8 more