Windows Snipping Tool Vulnerability Allows Attacker to Perform Spoofing Over a Network
ID: 2a0ea8eb-bff8-5afe-9654-312bd67aa0b8
STIX ID: report--2a0ea8eb-bff8-5afe-9654-312bd67aa0b8
Feed Name: cybersecurityNews.com
Microsoft patched CVE-2026-33829, a moderate-severity vulnerability in the Windows Snipping Tool that fails to properly validate ms-screensketch URI input, allowing an attacker who lures a user to click a crafted deep link to force an SMB connection to an attacker-controlled server and leak the user's NTLMv2 hash; the issue has a CVSS 3.1 score of 4.3, requires user interaction, has unproven exploit maturity with no reported in-the-wild exploitation, and mitigations include applying the April 14, 2026 security update, blocking outbound SMB (port 445), and user awareness.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
