Microsoft OneNote Spoofing Vulnerability Exposes User Identity
CVE-2023-33140 Published on June 14, 2023

Microsoft OneNote Spoofing Vulnerability
Microsoft OneNote Spoofing Vulnerability

Vendor Advisory NVD

Weakness Type

Authentication Bypass by Spoofing

This attack-focused weakness is caused by improperly implemented authentication schemes that are subject to spoofing attacks.


Products Associated with CVE-2023-33140

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2023-33140 are published in Microsoft Onenote:

 

Affected Versions

Microsoft OneNote for Universal:

Exploit Probability

EPSS
4.96%
Percentile
89.46%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.