Skype for Business in Microsoft Lync 2013 SP1 and Skype for Business 2016 allows an attacker to steal an authentication hash that can be reused elsewhere, due to how Skype for Business handles authentication requests, aka "Skype for Business Elevation of Privilege Vulnerability."
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: microsoft
Published: 2017-10-13T13:00:00Z
Updated: 2024-09-16T18:03:43.734Z
Reserved: 2017-07-31T00:00:00
Link: CVE-2017-11786
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-10-13T13:29:00.833
Modified: 2024-11-21T03:08:30.003
Link: CVE-2017-11786
Redhat
No data.