Skip to main content

Vendor/product archive

microsoft / lync_server CVEs

Beta · best-effort

16 CVEs tagged to microsoft / lync_server1 Critical, 2 High, 13 Medium, 0 Low, 0 Unrated.

CVE-2019-1029

Published Jun 12, 2019

A denial of service vulnerability exists in Skype for Business. An attacker who successfully exploited the vulnerability could cause Skype for Business to stop responding. Note th…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-2532

Published Sep 9, 2015

Cross-site scripting (XSS) vulnerability in Microsoft Lync Server 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "Lync Server XSS Infor…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-4071

Published Sep 10, 2014

The Server in Microsoft Lync Server 2013 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon hang) via a crafted request, aka "Lync Denial of…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-4070

Published Sep 10, 2014

Cross-site scripting (XSS) vulnerability in the Web Components Server in Microsoft Lync Server 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted UR…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-4068

Published Sep 10, 2014

The Response Group Service in Microsoft Lync Server 2010 and 2013 and the Core Components in Lync Server 2013 do not properly handle exceptions, which allows remote attackers to c…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-1823

Published Jun 11, 2014

Cross-site scripting (XSS) vulnerability in the Web Components Server in Microsoft Lync Server 2010 and 2013 allows remote attackers to inject arbitrary web script or HTML via a c…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-16 of 16 CVEsPage 1 of 1