4.3
CVSSv2

CVE-2018-8546

Published: 14/11/2018 Updated: 24/08/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.9 | Impact Score: 3.6 | Exploitability Score: 2.2
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

A denial of service vulnerability exists in Skype for Business, aka "Microsoft Skype for Business Denial of Service Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Lync, Skype.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft office 2019

microsoft skype for business basic 2016

microsoft lync basic 2013

microsoft lync 2013

microsoft office 365 proplus -

microsoft skype for business 2016

Exploits

A large number of emojis received in one message by the Skype For Business client freezes the program for a few seconds This can be exploited to perform denial of service attacks against Skype for Business users and compromises the availability of the program Affected includes Skype for Business 2015 (Lync 2013) before version 15050751000 and ...

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> SEC Consult SA-20181114-0 :: Denial of Service in Microsoft Skype for Business <!--X-Subject-Header-End--> <!--X-Head- ...