CVE-2026-66307
Microsoft · Published September 8, 2026
7.5
CVSS v3.1
HIGHPatch availableGet patch
Description
Skype for Business and Lync Denial of Service Vulnerability. Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service over a network.
Affected Products
- Skype for Business Server 2015 CU13
- Skype for Business Server Subscription Edition CU1
- Skype for Business Server 2019 CU8
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C