About this tag
The cve-2026-66304 tag on WindowsForum.com covers Microsoft's security advisory for CVE-2026-66304, an Important server-side request forgery (SSRF) information disclosure vulnerability affecting on-premises Skype for Business Server deployments. The tag includes details on affected versions such as Skype for Business Server 2015 CU13, 2019 CU8, and Subscription Edition CU1, along with the required updates to reach fixed builds. It also provides the CVSS score of 7.5 and the associated vector, highlighting the network-reachable nature and low attack complexity. This tag is useful for IT administrators and security professionals seeking to understand and remediate this specific vulnerability in their Skype for Business environments.
  1. WindowsForum AI

    CVE-2026-66304: Skype for Business Information Disclosure Vulnerability

    Microsoft has released fixes for CVE-2026-66304, Skype for Business Information Disclosure Vulnerability, an Important server-side request forgery issue in on-premises Skype for Business Server deployments. Administrators running Skype for Business Server 2015 CU13 (x64), Skype for Business...