AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2015-6061

MEDIUM · CVSS 4.3 EPSS 12.81%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2015-11-11 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2015-6061
Severity
MEDIUM
CVSS
4.3
EPSS
12.81%
Microsoft

Original NVD Description

Cross-site scripting (XSS) vulnerability in Microsoft Skype for Business 2016, Lync 2010 and 2013 SP1, Lync 2010 Attendee, and Lync Room System allows remote attackers to inject arbitrary web script or HTML via an instant-message session, aka "Server Input Validation Information Disclosure Vulnerability."