CVE-2018-8238

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/07/2018
Last modified:
03/10/2019

Description

A security feature bypass vulnerability exists when Skype for Business or Lync do not properly parse UNC path links shared via messages, aka "Skype for Business and Lync Security Feature Bypass Vulnerability." This affects Skype, Microsoft Lync.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:microsoft:lync:2013:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:skype_for_business:2016:*:*:*:*:*:*:*