CVE-2023-23397 | Microsoft Outlook

https://nvd.nist.gov/vuln/detail/CVE-2023-23397

9.8 score… zero click vulnerability ?
Malicious appointment with an UNC path pointing to a rogue SMB server to capture NTLM hash?
Able to use that hash to explore other servers?

Man, what a mess …

2 Likes