Null pointer dereference in Skype for Business allows an authorized attacker to deny service over a network.
Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service over a network.
Improper neutralization of input during web page generation ('cross-site scripting') in Skype for Business allows an unauthorized attacker to perform spoofing over a network.
Skype for Business Spoofing Vulnerability
External control of file name or path in Skype for Business allows an unauthorized attacker to execute code over a network.
Server-side request forgery (ssrf) in Skype for Business allows an unauthorized attacker to disclose information over a network.
Improper verification of cryptographic signature in Skype for Business allows an unauthorized attacker to perform spoofing over an adjacent network.
Generation of error message containing sensitive information in Skype for Business allows an unauthorized attacker to disclose information over a network.
Improper neutralization of input during web page generation ('cross-site scripting') in Skype for Business allows an unauthorized attacker to perform spoofing over a network.
Out-of-bounds read in Skype for Business allows an authorized attacker to deny service over a network.