CVE-2022-26911HighCVSS 6.5
Skype for Business Information Disclosure Vulnerability
🔗 CVE IDs covered (1)
📋 Description
What type of information could be disclosed by this vulnerability? The type of information that could be disclosed if an attacker successfully exploited this vulnerability is file content.
🎯 Affected products3
- Microsoft Lync Server 2013 CU10
- Skype for Business Server 2015 CU12
- Skype for Business Server 2019 CU6
✅ Remediation
KB5012681 (Security Update) — fixed build 8308.1194 KB5012686 (Security Update) — fixed build 9319.628
🔗 References (5)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-26911
- patchhttps://www.microsoft.com/download/details.aspx?familyid=dac7c777-fe8a-45a2-9a82-07a2e15c298f
- referencehttps://support.microsoft.com/help/5012681
- patchhttps://www.microsoft.com/download/details.aspx?familyid=0d08ed37-106a-456f-a5c6-61df22588bec
- referencehttps://support.microsoft.com/help/5012686