CVE-2026-69646
8.3
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L/E:U/RL:O/RC:C
Summary
Improper verification of cryptographic signature in Skype for Business allows an unauthorized attacker to perform spoofing over an adjacent network.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Skype for Business Server 2015 CU13 | 9319.0 < 6.0.9319.885 | affected |
| Microsoft | Skype for Business Server 2019 CU8 | 2046.0 < 7.0.2046.569 | affected |
| Microsoft | Skype for Business Server Subscription Edition CU1 | 2046.0 < 7.0.2046.879 | affected |
Weaknesses
- CWE-347: CWE-347: Improper Verification of Cryptographic Signature
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.