Outlook

CVE-2023-23397: An Email Can Steal Your Windows Credentials

CVE-2023-23397: An Email Can Steal Your Windows Credentials

CVE-2023-23397 is a critical privilege escalation vulnerability in Microsoft Outlook that allows for the exfiltration of NTLM authentication hashes via a specially crafted email. This flaw is exploited without any user interaction and raises significant security concerns for all versions of Outlook for Windows.