9.3
CVE-2018-8238
- EPSS 6.25%
- Veröffentlicht 11.07.2018 00:29:00
- Zuletzt bearbeitet 21.11.2024 04:13:28
- Quelle secure@microsoft.com
- CVE-Watchlists
- Unerledigt
A security feature bypass vulnerability exists when Skype for Business or Lync do not properly parse UNC path links shared via messages, aka "Skype for Business and Lync Security Feature Bypass Vulnerability." This affects Skype, Microsoft Lync.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Skype For Business Version2016
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 6.25% | 0.905 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|