Jul 2018:
CVE-2018-8238 Published on July 11, 2018
A security feature bypass vulnerability exists when Skype for Business or Lync do not properly parse UNC path links shared via messages, aka "Skype for Business and Lync Security Feature Bypass Vulnerability." This affects Skype, Microsoft Lync.
Products Associated with CVE-2018-8238
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2018-8238 are published in these products:
Affected Versions
Microsoft Skype:- Version Business 2016 (32-bit) is affected.
- Version Business 2016 (64-bit) is affected.
- Version 2013 Service Pack 1 (32-bit) is affected.
- Version 2013 Service Pack 1 (64-bit) is affected.
Exploit Probability
EPSS
5.34%
Percentile
89.86%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.