Microsoft Lync Server Information Disclosure Vulnerability
Last Update Date:
11 Jun 2014 14:32
Release Date:
11 Jun 2014
3653
Views
RISK: Medium Risk
TYPE: Servers - Other Servers
An information disclosure vulnerability exists when Lync Server fails to properly sanitize specially crafted content. An attacker who successfully exploited this vulnerability could potentially execute scripts in the user’s browser to obtain information from web sessions.
Impact
- Information Disclosure
System / Technologies affected
- Microsoft Lync Server 2010
- Microsoft Lync Server 2013
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Download location for patches:
https://technet.microsoft.com/library/security/MS14-032
Vulnerability Identifier
Source
Related Link
Share with