QID 110450

Date Published: 2023-10-11

QID 110450: Microsoft Skype for Business Server Security Update for October 2023

Microsoft has released updates to fix multiples updates to fix issues on Microsoft Skype for Business Server and Microsoft Lync Server..

Affected Software:
Microsoft Skype for Business Server 2015 CU13
Microsoft Skype for Business Server 2019 CU7

Successful exploitation of vulnerability can lead to Escalation of Privileges or Remote Code Execution Vulnerability

  • CVSS V3 rated as High - 7.2 severity.
  • CVSS V2 rated as High - 6.5 severity.
  • Solution
    Customers are advised to refer to these CVE Articles:
    CVE-2023-41763, CVE-2023-36780, CVE-2023-36789 and CVE-2023-36786 for more information pertaining to this vulnerability.

    CVEs related to QID 110450

    Software Advisories
    Advisory ID Software Component Link
    CVE-2023-36780 URL Logo msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36780
    CVE-2023-36786 URL Logo msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36786
    CVE-2023-36789 URL Logo msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36789
    CVE-2023-41763 URL Logo msrc.microsoft.com/update-guide/vulnerability/CVE-2023-41763