CVE-2017-11786
published 2017-10-13CVE-2017-11786: Skype for Business in Microsoft Lync 2013 SP1 and Skype for Business 2016 allows an attacker to steal an authentication hash that can be reused elsewhere, due…
PriorityP354high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
EPSS
9.39%
94.9th percentile
Skype for Business in Microsoft Lync 2013 SP1 and Skype for Business 2016 allows an attacker to steal an authentication hash that can be reused elsewhere, due to how Skype for Business handles authentication requests, aka "Skype for Business Elevation of Privilege Vulnerability."
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | lync | — | — |
| microsoft | skype_for_business | — | — |
| microsoft_corporation | skype_for_business | — | — |
| msrc | microsoft_lync_2013_service_pack_1 | — | — |
| msrc | skype_for_business_2016 | — | — |
CVSS provenance
nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_msrc8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-2xjh-35wj-vw46: Skype for Business in Microsoft Lync 2013 SP1 and Skype for Business 2016 allows an attacker to steal an authentication hash that can be reused elsewh
ghsa_unreviewed·2022-05-13
CVE-2017-11786 [HIGH] CWE-294 GHSA-2xjh-35wj-vw46: Skype for Business in Microsoft Lync 2013 SP1 and Skype for Business 2016 allows an attacker to steal an authentication hash that can be reused elsewh
Skype for Business in Microsoft Lync 2013 SP1 and Skype for Business 2016 allows an attacker to steal an authentication hash that can be reused elsewhere, due to how Skype for Business handles authentication requests, aka "Skype for Business Elevation of Privilege Vulnerability."
Microsoft
Skype for Business Elevation of Privilege Vulnerability
vendor_msrc·2017-10-10·CVSS 8.8
CVE-2017-11786 [HIGH] Skype for Business Elevation of Privilege Vulnerability
Skype for Business Elevation of Privilege Vulnerability
Description: An elevation of privilege vulnerability exists when Skype for Business fails to properly handle specific authentication requests.
An authenticated attacker who successfully exploited this vulnerability could steal an authentication hash that can be reused elsewhere. The attacker could then take any action that the user had permissions for, causing possible outcomes that could vary between users.
To exploit the vulnerability, an attacker could invite a user to an instant message session while using a malicious profile image.
The security update addresses the vulnerability by correcting how Skype for Business handles authentication requests.
Microsoft Office: Microsoft Office
Issuing CNA: Microsoft
Impact: Elevation of
No detection rules found.
No public exploits indexed.
http://www.securityfocus.com/bid/101156http://www.securitytracker.com/id/1039530https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11786http://www.securityfocus.com/bid/101156http://www.securitytracker.com/id/1039530https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11786
2017-10-13
Published