Wow, I'm late. The #cve202323397 is still exploitable even after patching.
https://nitter.nl/domchell/status/1636742613121236992
https://nitter.nl/domchell/status/1636742613121236992Dominic Chell 👻 (@domchell)
Following some additional testing of #CVE-2023-23397 - I can confirm MS have only partially fixed this. You can still trigger auth to systems in trusted zones - ie other AD joined systems, which can then be relayed for privilege escalation 🔥https://vimeo.com/809084317