CVE-2020-1025 | Microsoft Lync/Skype for Business Server/SharePoint OAuth Token privileges management
A vulnerability, which was classified as critical, was found in Microsoft Lync, Skype for Business Server and SharePoint. This issue affects some unknown processing of the component OAuth Token Handler. Such manipulation leads to improper privilege management.
This vulnerability is traded as CVE-2020-1025. The attack may be launched remotely. There is no exploit available.
It is advisable to implement a patch to correct this issue.