CVE-2017-0129

Description

Microsoft Lync for Mac 2011 fails to properly validate certificates, allowing remote attackers to alter server-client communications, aka Microsoft Lync for Mac Certificate Validation Vulnerability.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
EPSS Score
Exploitation Probability
1.738

Associated Vulnerability

VulnerabilityOS Platform
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Office Compatibility Pack Service Pack 3 (KB3178677)Windows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Office Excel Viewer 2007 (KB3178680)Windows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Office Excel 2007 (KB3178676)Windows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Office 2010 (KB3178686) 64-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Office 2010 (KB3178686) 32-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Word Viewer (KB3178694)Windows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Word 2016 (KB3178674) 64-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Word 2016 (KB3178674) 32-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Office Word 2007 (KB3178683)Windows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Word 2013 (KB3172464) 64-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Word 2013 (KB3172464) 32-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Word 2010 (KB3178687) 32-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Excel 2010 (KB3178690) 64-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Excel 2010 (KB3178690) 32-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Excel 2016 (KB3178673) 64-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Excel 2016 (KB3178673) 32-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Excel 2013 (KB3172542) 64-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Excel 2013 (KB3172542) 32-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft Office Web Apps Server 2013 (KB3172457)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-22024Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB3178677)
PATCH-22025Security Update for Microsoft Office Excel Viewer 2007 (KB3178680)
PATCH-22010Security Update for Microsoft Office Excel 2007 (KB3178676)
PATCH-22011Security Update for Microsoft Office 2010 (KB3178686) 64-Bit Edition
PATCH-22012Security Update for Microsoft Office 2010 (KB3178686) 32-Bit Edition
PATCH-22026Security Update for Word Viewer (KB3178694)
PATCH-22137Security Update for Microsoft Office Word 2007 (KB3178683)
PATCH-22019Security Update for Microsoft Word 2013 (KB3172464) 64-Bit Edition
PATCH-22018Security Update for Microsoft Word 2013 (KB3172464) 32-Bit Edition
PATCH-22015Security Update for Microsoft Word 2010 (KB3178687) 32-Bit Edition
PATCH-22014Security Update for Microsoft Excel 2010 (KB3178690) 64-Bit Edition
PATCH-22013Security Update for Microsoft Excel 2010 (KB3178690) 32-Bit Edition
PATCH-22021Security Update for Microsoft Excel 2016 (KB3178673) 64-Bit Edition
PATCH-22020Security Update for Microsoft Excel 2016 (KB3178673) 32-Bit Edition
PATCH-22017Security Update for Microsoft Excel 2013 (KB3172542) 64-Bit Edition
PATCH-22016Security Update for Microsoft Excel 2013 (KB3172542) 32-Bit Edition
PATCH-22136Security Update for Microsoft Office Web Apps Server 2013 (KB3172457)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234