6.8
CVSSv2

CVE-2018-8311

Published: 11/07/2018 Updated: 10/09/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

A remote code execution vulnerability exists when Skype for Business and Microsoft Lync clients fail to properly sanitize specially crafted content, aka "Remote Code Execution Vulnerability in Skype For Business and Lync." This affects Skype, Microsoft Lync.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft skype for business -

microsoft lync -

Recent Articles

Intel, Microsoft, Adobe release a swarm of bug fixes to ruin your week
The Register • Shaun Nichols in San Francisco • 11 Jul 2018

Massive patch dump with 112 fixes... and that's just for the Photoshop giant

IT admins face a busy week ahead as Microsoft, Intel, and Adobe have issued bundles of scheduled security fixes addressing more than 150 CVE-listed vulnerabilities. For Redmond, the July Patch Tuesday will bring fixes for 53 individual bugs, 25 of those allowing for remote code execution attacks. This includes the usual array of Edge and Internet Explorer memory corruption flaws that could allow an attacker to place exploits within a web page and use them to take over a system with the current u...