Skip to main content

Microsoft Lync Server Information Disclosure Vulnerability

Last Update Date: 11 Jun 2014 14:32 Release Date: 11 Jun 2014 3102 Views

RISK: Medium Risk

TYPE: Servers - Other Servers

TYPE: Other Servers

An information disclosure vulnerability exists when Lync Server fails to properly sanitize specially crafted content. An attacker who successfully exploited this vulnerability could potentially execute scripts in the user’s browser to obtain information from web sessions.


Impact

  • Information Disclosure

System / Technologies affected

  • Microsoft Lync Server 2010
  • Microsoft Lync Server 2013

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.


Vulnerability Identifier


Source


Related Link