CVE-2023-41763: Microsoft Skype for Business Privilege Escalation Vulnerability
Microsoft Skype for Business contains an unspecified vulnerability that allows for privilege escalation.
Other sources
Skype for Business Elevation of Privilege Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 7.0.246.530Patch KB4470124 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.9319.869Patch KB3061064 - Upgrade
Upgrade
Microsoft Skype For Business Serverto a version that resolves this vulnerability.Fixed in 6.0.9319.869Patch KB3061064 - Upgrade
Upgrade
Microsoft Skype for Businessto a version that resolves this vulnerability.Fixed in 7.0.246.530Patch KB4470124 - Compensating control
Discontinue use of the product if mitigations are unavailable.
Event History
Frequently Asked Questions
What is CVE-2023-41763?
CVE-2023-41763 is a privilege escalation vulnerability in Microsoft Skype for Business.
How severe is CVE-2023-41763?
CVE-2023-41763 has a severity rating of 5.3, which is considered high.
Which versions of Skype for Business are affected by CVE-2023-41763?
Skype for Business Server 2015 CU13, Skype for Business Server 2019 CU7, and the general Skype for Business product are affected by CVE-2023-41763.
How can I fix CVE-2023-41763?
To fix CVE-2023-41763, you can apply the appropriate patches or updates provided by Microsoft.
Where can I find more information about CVE-2023-41763?
You can find more information about CVE-2023-41763 on the Microsoft Security Response Center website.