CVE-2019-0624: XSS
A spoofing vulnerability exists when a Skype for Business 2015 server does not properly sanitize a specially crafted request, aka "Skype for Business 2015 Spoofing Vulnerability." This affects Skype.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2019-0624?
CVE-2019-0624 is a spoofing vulnerability that exists in Skype for Business 2015 server.
How does CVE-2019-0624 impact Skype for Business 2015 server?
CVE-2019-0624 allows attackers to spoof requests and potentially impersonate legitimate users on Skype for Business 2015 server.
What is the severity of CVE-2019-0624?
CVE-2019-0624 has a severity rating of medium (5.4).
How can I fix CVE-2019-0624?
To fix CVE-2019-0624, apply the necessary updates provided by Microsoft.
Where can I find more information about CVE-2019-0624?
You can find more information about CVE-2019-0624 in the following references: [SecurityFocus](http://www.securityfocus.com/bid/106663), [Microsoft Security Guidance](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0624).