First published: Tue Apr 09 2019(Updated: )
A spoofing vulnerability exists when a Lync Server or Skype for Business Server does not properly sanitize a specially crafted request, aka 'Skype for Business and Lync Spoofing Vulnerability'.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Lync Server | =2013 | |
Microsoft Skype For Business Server | =2015 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-0798 is a spoofing vulnerability that exists when a Lync Server or Skype for Business Server does not properly sanitize a specially crafted request.
CVE-2019-0798 has a severity rating of 6.1 (Medium).
CVE-2019-0798 affects Microsoft Lync Server 2013 and Microsoft Skype for Business Server 2015.
To fix CVE-2019-0798, it is recommended to apply the latest security updates provided by Microsoft.
More information about CVE-2019-0798 can be found in the Microsoft Security Guidance Advisory at https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0798.