First published: Tue Jul 12 2022(Updated: )
Skype for Business and Lync Remote Code Execution Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Lync Server | =2013-cumulative_update_10 | |
Microsoft Skype for Business | =2015-cumulative_update_12 | |
Microsoft Skype for Business | =2019-cumulative_update_6 | |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-33633 refers to the Skype for Business and Lync Remote Code Execution Vulnerability.
CVE-2022-33633 allows remote attackers to execute arbitrary code or cause a denial of service on Skype for Business and Lync servers.
CVE-2022-33633 has a severity rating of high.
Skype for Business Server 2015 CU12, Skype for Business Server 2019 CU6, and Lync Server 2013 CU10 are affected by CVE-2022-33633.
To fix CVE-2022-33633, apply the respective cumulative updates provided by Microsoft for the affected versions of Skype for Business and Lync.