Total
9 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2022-26911 | 1 Microsoft | 2 Lync Server, Skype For Business Server | 2022-04-26 | 4.0 MEDIUM | 6.5 MEDIUM |
Skype for Business Information Disclosure Vulnerability. | |||||
CVE-2022-26910 | 1 Microsoft | 1 Skype For Business Server | 2022-04-26 | 5.0 MEDIUM | 5.3 MEDIUM |
Skype for Business and Lync Spoofing Vulnerability. | |||||
CVE-2021-26421 | 1 Microsoft | 2 Lync Server, Skype For Business Server | 2021-05-18 | 5.8 MEDIUM | 7.1 HIGH |
Skype for Business and Lync Spoofing Vulnerability | |||||
CVE-2021-26422 | 1 Microsoft | 2 Lync Server, Skype For Business Server | 2021-05-17 | 6.5 MEDIUM | 7.2 HIGH |
Skype for Business and Lync Remote Code Execution Vulnerability | |||||
CVE-2021-24099 | 1 Microsoft | 2 Lync Server, Skype For Business Server | 2021-03-04 | 4.0 MEDIUM | 6.5 MEDIUM |
Skype for Business and Lync Denial of Service Vulnerability | |||||
CVE-2021-24073 | 1 Microsoft | 2 Lync Server, Skype For Business Server | 2021-03-02 | 5.8 MEDIUM | 7.1 HIGH |
Skype for Business and Lync Spoofing Vulnerability | |||||
CVE-2019-0798 | 1 Microsoft | 2 Lync Server, Skype For Business Server | 2020-08-24 | 4.3 MEDIUM | 6.1 MEDIUM |
A spoofing vulnerability exists when a Lync Server or Skype for Business Server does not properly sanitize a specially crafted request, aka 'Skype for Business and Lync Spoofing Vulnerability'. | |||||
CVE-2015-2536 | 1 Microsoft | 2 Lync Server, Skype For Business Server | 2018-10-12 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in Microsoft Lync Server 2013 and Skype for Business Server 2015 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "Skype for Business Server and Lync Server XSS Elevation of Privilege Vulnerability." | |||||
CVE-2015-2531 | 1 Microsoft | 2 Lync Server, Skype For Business Server | 2018-10-12 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in the jQuery engine in Microsoft Lync Server 2013 and Skype for Business Server 2015 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "Skype for Business Server and Lync Server XSS Information Disclosure Vulnerability." |