
Before Microsoft discontinued WordPad in Windows 11 version 24H2 (2024), it faced vulnerabilities including: - MS09-073 (2009): Important-rated remote code execution via text converters, affecting Windows 2000 to Server 2003 and Office XP/2003. - CVE-2023-36563 (2023): Critical issue exposing NTLM hashes, exploited in the wild, impacting Windows 10/11 and Servers 2008-2022. No official security reason was given for removal; Microsoft recommends Word or Notepad.
Post summary
CVE-2023-36563 was actively exploited in the wild, exposing NTLM hashes, but the text provides no PoC, exploit code, patch, or workaround details.
