PT-2018-18505 · Microsoft · Skype For Business+2

Steven Thompson

·

Published

2018-07-11

·

Updated

2019-10-03

·

CVE-2018-8238

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Skype for Business (affected versions not specified) Microsoft Lync (affected versions not specified)
Description A security feature bypass issue exists due to improper parsing of UNC path links shared via messages. This issue affects Skype and Microsoft Lync products.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2018-8238

Affected Products

Lync
Skype
Skype For Business