Computer Security
[EN] securityvulns.ru no-pyccku


Microsoft Lync information leakage
Published:14.07.2014
Source:
SecurityVulns ID:13862
Type:remote
Threat Level:
5/10
Description:Cross application scripting.
Affected:MICROSOFT : Lync Server 2010
 MICROSOFT : Lync Server 2013
CVE:CVE-2014-1823 (Cross-site scripting (XSS) vulnerability in the Web Components Server in Microsoft Lync Server 2010 and 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted URL containing a valid meeting ID, aka "Lync Server Content Sanitization Vulnerability.")
Files: Microsoft Security Bulletin MS14-032 - Important Vulnerability in Microsoft Lync Server Could Allow Information Disclosure (2969258)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod