CVE-2023-23397CISA KEVEPSS p99.9%

CVE-2023-23397Microsoft Office Outlook Privilege Escalation Vulnerability

Microsoft / Office

Description

Microsoft Office Outlook contains a privilege escalation vulnerability that allows for a NTLM Relay attack against another service to authenticate as the user.

Scoring

EPSS97.41% probability of exploitation · percentile 99.9% · 2026-06-15T12:03:41Z

CISA KEV entry

Added to KEV: 2023-03-14

(incoming)1

TypeTargetConfidenceTier
KEVEntryMicrosoft Office Outlook Privilege Escalation Vulnerabilitykev-cve-2023-233970%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Microsoft Outlook Security Feature Bypass Vulnerability
CVE
Microsoft Exchange Server Privilege Escalation Vulnerability
CVE
Microsoft Office Outlook Security Feature Bypass Vulnerability
CVE
Microsoft Skype for Business Privilege Escalation Vulnerability
CVE
Microsoft Outlook Improper Input Validation Vulnerability
CVE
CVE-2022-41080
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.