Lync Basic
Vendor:
First CVE: Jul 10, 2013 · Active for 13 years
9
Total CVEs
More Total CVEs than 86% of tracked products
2.3
Avg CVEs / Year
Higher CVE frequency than 73% of tracked products
8.4
Avg CVSS
Higher Avg CVSS than 75% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Lync Basic over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jul 10, 2013
13 years ago
Most Recent CVE
Jul 15, 2019
2,566 days ago
CVE Severity & Scoring
Lync Basic9 CVEs
22%
78%
All CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local1 (11.1%)
Network2 (22.2%)
Unknown6 (66.7%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (22.2%)
High1 (11.1%)
Unknown6 (66.7%)
User Interaction
None2 (22.2%)
Unknown6 (66.7%)
Required1 (11.1%)
Privileges Required
Low1 (11.1%)
High0 (0.0%)
None2 (22.2%)
Unknown6 (66.7%)
Top CVEs
Signals from CVEs in this product scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-2455HIGH Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Windows 10, Office | Aug 15, 2015 | 9.3 | 61 | NO | YES |
CVE-2015-2464HIGH Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Office 2007 SP3 an | Aug 15, 2015 | 9.3 | 52 | NO | YES |
CVE-2015-2463HIGH Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Office 2007 SP3 an | Aug 15, 2015 | 9.3 | 52 | NO | YES |
CVE-2015-2456HIGH Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Windows 10, Office | Aug 15, 2015 | 9.3 | 52 | NO | YES |
CVE-2015-2431HIGH Microsoft Office 2007 SP3 and 2010 SP2, Live Meeting 2007 Console, Lync 2010, Lync 2010 Attendee, Lync 2013 SP1, and Lync Basic 2013 SP1 allow remote attackers to execute arbitrary | Aug 15, 2015 | 9.3 | 51 | NO | YES |
CVE-2013-3129HIGH Microsoft .NET Framework 3.0 SP2, 3.5, 3.5.1, 4, and 4.5; Silverlight 5 before 5.1.20513.0; win32k.sys in the kernel-mode drivers, and GDI+, DirectWrite, and Journal, in Windows XP | Jul 10, 2013 | 7.8 | 43 | NO | NO |
CVE-2015-2435HIGH Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Windows 10, Office | Aug 15, 2015 | 9.3 | 33 | NO | NO |
CVE-2018-8546MEDIUM A denial of service vulnerability exists in Skype for Business, aka "Microsoft Skype for Business Denial of Service Vulnerability." This affects Office 365 ProPlus, Microsoft Offic | Nov 14, 2018 | 5.9 | 24 | NO | NO |
CVE-2019-1084MEDIUM An information disclosure vulnerability exists when Exchange allows creation of entities with Display Names having non-printable characters. An authenticated attacker could exploit | Jul 15, 2019 | 6.5 | 23 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (9 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
5 CVEs
55.6% of CVEs· 93rd percentile
Social Chatter
Signals from CVEs in this product scope (9 CVEs).
Media Mentions
Signals from CVEs in this product scope (9 CVEs).
Top CNAs Publishing CVEs For Lync Basic
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 2013 | 9 | 8.5 | 27.3% | 0 | 5 |