Microsoft Windows Snipping Tool Information Disclosure Vulnerability
RISK: Medium Risk
TYPE: Operating Systems - Windows OS
A vulnerability has been identified in Microsoft Windows Snipping Tool, a remote user can exploit this vulnerability to trigger information disclosure on the targeted system.
Proof of Concept exploit code is publicly available for CVE-2023-28303.
- Information Disclosure
System / Technologies affected
- Snip & Sketch in Windows 10 prior to 10.2008.3001.0
- Snipping Tool in Windows 11 prior to 11.2302.20.0
Please refer to the link below for detail:
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor.
- Windows 10：Update to version 10.2008.3001.0 or later
- Windows 11： Update to version 11.2302.20.0 or later