60 results (0.002 seconds)

CVSS: 10.0EPSS: 3%CPEs: 1EXPL: 0

12 Mar 2024 — Skype for Consumer Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código de Skype para consumidores This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Skype. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the implementation of the Today tab. The issue results from the lack of context isolation. An attacker can... • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21411 • CWE-453: Insecure Default Variable Initialization •

CVSS: 5.7EPSS: 0%CPEs: 1EXPL: 0

13 Feb 2024 — Skype for Business Information Disclosure Vulnerability Vulnerabilidad de divulgación de información de Skype Empresarial • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-20695 • CWE-284: Improper Access Control •

CVSS: 7.8EPSS: 0%CPEs: 9EXPL: 0

13 Feb 2024 — Microsoft Office Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código de Microsoft Office • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-20673 • CWE-693: Protection Mechanism Failure •

CVSS: 8.3EPSS: 0%CPEs: 2EXPL: 0

10 Oct 2023 — Skype for Business Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código de Skype Empresarial • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36780 • CWE-426: Untrusted Search Path •

CVSS: 8.3EPSS: 0%CPEs: 2EXPL: 0

10 Oct 2023 — Skype for Business Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código de Skype Empresarial • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36786 • CWE-36: Absolute Path Traversal •

CVSS: 8.3EPSS: 0%CPEs: 2EXPL: 0

10 Oct 2023 — Skype for Business Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código de Skype Empresarial • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36789 • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVSS: 5.3EPSS: 14%CPEs: 2EXPL: 0

10 Oct 2023 — Skype for Business Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios en Skype Empresarial Microsoft Skype for Business contains an unspecified vulnerability that allows for privilege escalation. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-41763 • CWE-918: Server-Side Request Forgery (SSRF) •

CVSS: 7.2EPSS: 6%CPEs: 3EXPL: 0

12 Jul 2022 — Skype for Business and Lync Remote Code Execution Vulnerability Una Vulnerabilidad de Ejecución de Código Remota en Skype for Business y Lync • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-33633 •

CVSS: 6.5EPSS: 19%CPEs: 3EXPL: 0

15 Apr 2022 — Skype for Business Information Disclosure Vulnerability Una vulnerabilidad de Divulgación de Información de Skype for Business • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-26911 •

CVSS: 5.3EPSS: 2%CPEs: 2EXPL: 0

15 Apr 2022 — Skype for Business and Lync Spoofing Vulnerability Una vulnerabilidad de Suplantación en Skype for Business and Lync • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-26910 • CWE-290: Authentication Bypass by Spoofing •