#VU81753 Information disclosure in Windows and Windows Server - CVE-2023-36563
Published: October 10, 2023
Windows
Windows Server
Microsoft
Description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to disclosure of NTLM hashes in WordPad. A remote attacker can trick the victim to open a specially crafted file and gain access to sensitive information.
Note, the vulnerability is being exploited in the wild.