Description
Multiple serious vulnerabilities have been found in Microsoft Lync Server. Malicious users can exploit these vulnerabilities to inject arbitrary code or cause denial of service.
Below is a complete list of vulnerabilities
- XSS vulnerability can be exploited remotely via a specially designed URL;
- Improper exceptions handling can be exploited remotely via a specially designed call;
- An unknown vulnerability can be exploited remotely via a specially designed request.
Original advisories
Related products
CVE list
- CVE-2014-4071 critical
- CVE-2014-4070 warning
- CVE-2014-1823 warning
- CVE-2014-4068 critical
KB list
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!