CVE Database
/

CVE-2014-1823

Back to search

CVE-2014-1823

Published: Jun 11, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in the Web Components Server in Microsoft Lync Server 2010 and 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted URL containing a valid meeting ID, aka "Lync Server Content Sanitization Vulnerability."

VendorProductVersions

n/a

n/a

affected
n/a

References

1030381
vdb-entry
x_refsource_SECTRACK
MS14-032
vendor-advisory
x_refsource_MS
67893
vdb-entry
x_refsource_BID
58537
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now