Rewterz
Rewterz Threat Advisory – Multiple Microsoft Edge Vulnerabilities
March 29, 2023
Rewterz
Rewterz Threat Alert – STOP (DJVU) Ransomware – Active IOCs
March 29, 2023

Rewterz Threat Advisory – CVE-2023-28303 – Microsoft Windows Snipping Tool Vulnerability

Severity

Medium

Analysis Summary

CVE-2023-28303

Microsoft Windows Snipping Tool could allow a remote attacker to obtain sensitive information. By persuading a victim to open a specially crafted image file, an attacker could exploit this vulnerability to obtain sensitive information. Note: This vulnerability is known as aCropalypse.

Impact

  • Information Disclosure

Indicators Of Compromise

CVE

  • CVE-2023-28303

Affected Vendors

Microsoft

Affected Products

  • Microsoft Snipping Tool
  • Microsoft Snip & Sketch for Windows 10

Remediation

Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches. 

Microsoft Security TechCenter