8.3
CVE-2026-69646
- EPSS 0.21%
- Veröffentlicht 08.09.2026 19:19:04
- Zuletzt bearbeitet 16.09.2026 19:26:34
- Erkennungen
Skype for Business Spoofing Vulnerability
Improper verification of cryptographic signature in Skype for Business allows an unauthorized attacker to perform spoofing over an adjacent network.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Skype For Business Server Version 2015 Update cumulative_update_13
Microsoft ≫ Skype For Business Server Version 2015 Update cumulative_update_13_hotfix_2
Microsoft ≫ Skype For Business Server Version 2019 Update cumulative_update_8
Microsoft ≫ Skype For Business Server Version 2019 Update cumulative_update_8_hotfix1
Microsoft ≫ Skype For Business Server Version 2019 Update cumulative_update_8_hotfix2
Microsoft ≫ Skype For Business Server Subscription Edition Version 7.0.2046.849
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.21% | 0.112 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| Microsoft | 8.3 | 2.8 | 5.5 |
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
|
CWE-347 Improper Verification of Cryptographic Signature
The product does not verify, or incorrectly verifies, the cryptographic signature for data.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69646