8.3

CVE-2026-69646

Skype for Business Spoofing Vulnerability

Improper verification of cryptographic signature in Skype for Business allows an unauthorized attacker to perform spoofing over an adjacent network.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Skype For Business Server Version 2015 Update cumulative_update_13
Microsoft ≫ Skype For Business Server Version 2015 Update cumulative_update_13_hotfix_2
Microsoft ≫ Skype For Business Server Version 2019 Update cumulative_update_8
Microsoft ≫ Skype For Business Server Version 2019 Update cumulative_update_8_hotfix1
Microsoft ≫ Skype For Business Server Version 2019 Update cumulative_update_8_hotfix2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.21% 0.112
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Microsoft 8.3 2.8 5.5
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
CWE-347 Improper Verification of Cryptographic Signature

The product does not verify, or incorrectly verifies, the cryptographic signature for data.

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69646
Patch
Vendor Advisory