First published: Thu Jan 17 2019(Updated: )
A spoofing vulnerability exists when a Skype for Business 2015 server does not properly sanitize a specially crafted request, aka "Skype for Business 2015 Spoofing Vulnerability." This affects Skype.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Skype for Business | =2015-cu8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-0624 is a spoofing vulnerability that exists in Skype for Business 2015 server.
CVE-2019-0624 allows attackers to spoof requests and potentially impersonate legitimate users on Skype for Business 2015 server.
CVE-2019-0624 has a severity rating of medium (5.4).
To fix CVE-2019-0624, apply the necessary updates provided by Microsoft.
You can find more information about CVE-2019-0624 in the following references: [SecurityFocus](http://www.securityfocus.com/bid/106663), [Microsoft Security Guidance](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0624).