Microsoft / Skype
8 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2020-24003 | Microsoft Skype through 8.59.0.77 on macOS has the disable-library-validation entitlement, which allows a local process (with the user's privileges) to obtain… | LOW | 3.3 | Jan 11, 2021 |
| CVE-2019-0932 | An information disclosure vulnerability exists in Skype for Android, aka 'Skype for Android Information Disclosure Vulnerability'. | MEDIUM | 5.9 | May 16, 2019 |
| CVE-2019-0624 | A spoofing vulnerability exists when a Skype for Business 2015 server does not properly sanitize a specially crafted request, aka "Skype for Business 2015 Spoo… | MEDIUM | 5.4 | Jan 17, 2019 |
| CVE-2019-0622 | An elevation of privilege vulnerability exists when Skype for Andriod fails to properly handle specific authentication requests, aka "Skype for Android Elevati… | MEDIUM | 4.6 | Jan 8, 2019 |
| CVE-2018-8546 | A denial of service vulnerability exists in Skype for Business, aka "Microsoft Skype for Business Denial of Service Vulnerability." This affects Office 365 Pro… | MEDIUM | 5.9 | Nov 14, 2018 |
| CVE-2018-8311 | A remote code execution vulnerability exists when Skype for Business and Microsoft Lync clients fail to properly sanitize specially crafted content, aka "Remot… | HIGH | 8.8 | Jul 11, 2018 |
| CVE-2018-8238 | A security feature bypass vulnerability exists when Skype for Business or Lync do not properly parse UNC path links shared via messages, aka "Skype for Busines… | HIGH | 7.8 | Jul 11, 2018 |
| CVE-2018-0595 | Untrusted search path vulnerability in the installer of Skype for Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified direct… | HIGH | 7.8 | Jun 26, 2018 |
| CVE-2018-0594 | Untrusted search path vulnerability in Skype for Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. | HIGH | 7.8 | Jun 26, 2018 |
| CVE-2017-9948 | A stack buffer overflow vulnerability has been discovered in Microsoft Skype 7.2, 7.35, and 7.36 before 7.37, involving MSFTEDIT.DLL mishandling of remote RDP… | HIGH | 8.8 | Jun 26, 2017 |
| CVE-2017-6517 | Microsoft Skype 7.16.0.102 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on the targeted system. This… | CRITICAL | 9.8 | Mar 23, 2017 |
| CVE-2016-5720 | Multiple untrusted search path vulnerabilities in Microsoft Skype allow local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan ho… | HIGH | 7.8 | Jan 23, 2017 |
Showing 1 to 8 of 8 CVEs