Sure, if you were in a position to watch the traffic and simple (LDAP) authentication were used. It's why basic LDAP authentication should only be permitted over a secure network or with encryption.
You have applications using that now which you are concerned about?
Chris