CVE-2023-36789: Skype for Business Remote Code Execution Vulnerability
Published Oct 10, 2023
·Updated
Skype for Business Remote Code Execution Vulnerability
Affected Software
4 affected componentsFixes available
Microsoft Skype for Business Server 2015 CU13
Microsoft Skype for Business Server 2019 CU7
Microsoft Skype for Business Server=2015-cumulative_update_13
Microsoft Skype for Business Server=2019-cumulative_update_7
Remediation
Event History
Oct 10, 2023
CVE Published
via Microsoft·07:00 AM
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
Description
CVE Published
via MITRE·05:08 PM
Data Sourced
via MITRE·05:08 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2023-36789?
CVE-2023-36789 is a remote code execution vulnerability in Skype for Business.
2
How severe is CVE-2023-36789?
CVE-2023-36789 has a severity value of 7.2, which is considered high.
3
Which versions of Skype for Business are affected by CVE-2023-36789?
Skype for Business Server 2015 CU13 and Skype for Business Server 2019 CU7 are affected by CVE-2023-36789.
4
How can I fix CVE-2023-36789?
You can fix CVE-2023-36789 by applying the relevant patches provided by Microsoft.
5
Where can I find more information about CVE-2023-36789?
You can find more information about CVE-2023-36789 on the Microsoft Security Response Center website.