Microsoft Skype for Business 2019 Cumulative Update 2

CPE Details

Microsoft Skype for Business 2019 Cumulative Update 2
2019
2020-01-15
14h04 +00:00
2020-01-15
14h04 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:microsoft:skype_for_business:2019:cumulative_update_2:*:*:*:*:*:*

Informations

Vendor

microsoft

Product

skype_for_business

Version

2019

Update

cumulative_update_2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-1025 2020-07-14 20h53 +00:00 An elevation of privilege vulnerability exists when Microsoft SharePoint Server and Skype for Business Server improperly handle OAuth token validation. An attacker who successfully exploited the vulnerability could bypass authentication and achieve improper access. To exploit this vulnerability, an attacker would need to modify the token. The update addresses the vulnerability by modifying how Microsoft SharePoint Server and Skype for Business Server validate tokens.
9.8
Critical
CVE-2019-1490 2019-12-10 20h41 +00:00 A spoofing vulnerability exists when a Skype for Business Server does not properly sanitize a specially crafted request, aka 'Skype for Business Server Spoofing Vulnerability'.
5.4
Medium