CVE-2023-23397

9.8CRITICAL

Microsoft Outlook Elevation of Privilege Vulnerability

发布于: 3/14/2023更新于: 10/27/2025

CISA已知被利用漏洞

Microsoft Office Outlook contains a privilege escalation vulnerability that allows for a NTLM Relay attack against another service to authenticate as the user.

所需操作:

Apply updates per vendor instructions.

截止日期:

2023-04-04

描述

Microsoft Outlook Elevation of Privilege Vulnerability

AI分析AI驱动

受影响产品

microsoft365_apps
-
microsoftoffice
2019
microsoftoffice_long_term_servicing_channel
2021
microsoftoutlook
2013
microsoftoutlook
2013
microsoftoutlook
2016

参考资料