CyberICT

CVE-2026-66307

Microsoft · Published September 8, 2026

CVSS v3.1

HIGH
Patch availableGet patch

Description

Skype for Business and Lync Denial of Service Vulnerability. Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service over a network.

Affected Products

  • Skype for Business Server 2015 CU13
  • Skype for Business Server Subscription Edition CU1
  • Skype for Business Server 2019 CU8

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C