
This is our daily post that is shared across Twitter & Telegram and published first on here with Kindness & Love XX on peace-truth.com/
#AceNewsRoom in Kindness & Wisdom provides News & Views @acebreakingnews

#AceSecurityDesk – High Severity Vulnerability present in Microsoft Outlook for Windows Content complexity Moderate

Background / What has happened?
A critical elevation of privilege vulnerability (CVE-2023-23397) has been identified in all versions of Microsoft Outlook for Windows.
Microsoft Outlook for Windows is a personal information manager software system from Microsoft, available as a part of the Microsoft Office and Microsoft 365 software suites. Microsoft Outlook for Windows is available on Windows.
Exploitation of this vulnerability occurs when a threat actor delivers a specially crafted message to a user. These can leak the new technology LAN manager (NTLM) hash of the user to the untrusted network which an attacker can then relay to another service and authenticate as the user.
Affected Australian organisations should apply the available patch immediately.
The ACSC is not aware of any successful exploitation attempts against Australian organisations.
Mitigation / How do I stay secure?
Australian organisations that use Microsoft Outlook for Windows should review their patch status and update to the latest version.
Additionally the ACSC recommends organisations block outbound SMB traffic (Ports 139 and 445).
Assistance / Where can I go for help?
The ACSC is monitoring the situation and is able to provide assistance and advice as required. Organisations or individuals that have been impacted or require assistance can contact us via 1300 CYBER1 (1300 292 371).

Editor says …Sterling Publishing & Media Service Agency is not responsible for the content of external site or from any reports, posts or links, and can also be found here on Telegram: https://t.me/acenewsdaily and thanks for following as always appreciate every like, reblog or retweet and comment thank you



You must be logged in to post a comment.