Skype 3.6.0.248, and other versions before 3.8.0.139, uses a case-sensitive comparison when checking for dangerous extensions, which allows user-assisted remote attackers to bypass warning dialogs and possibly execute arbitrary code via a file: URI with a dangerous extension that uses a different case.
総合評価: CVE-2008-2545 は中リスク(63/100)。CVSS 深刻度は重大。悪用される可能性が高い(EPSS 1.69%、81 パーセンタイル) 推奨対応: 影響資産を整理し、修補計画に組み込んでください。
リスクは変動します。再評価に基づき、本ページの表示内容を更新しています。
EPSS は日次で悪用されやすさの相対度合いを推定します。パーセンタイルは採点済み CVE の中での相対位置(高いほど相対的に深刻)を示します。
| # | 日付 | 旧 EPSS スコア | 新 EPSS スコア | Δ(新 − 旧) |
|---|---|---|---|---|
| 1 | 2025-03-30 | 4.04% | 1.69% | -2.35% |
| 2 | 2025-03-29 | 1.69% | 4.04% | +2.35% |
| 3 | 2025-03-17 | — | 1.69% | — |
EPSS の全履歴 (全 12 件)
この CVE の CVSS 指標。
| ベーススコア | バージョン | 深刻度 | ベクトル | 悪用しやすさ | 影響 | スコアの出典 |
|---|---|---|---|---|---|---|
| 9.3 | 2.0 | HIGH |
|
8.6 | 10.0 | [email protected] |
| ベンダー | 製品 | バージョン | 生の CPE |
|---|---|---|---|
| skype_technologies | skype | <= 3.8.0.115 | cpe:2.3:a:skype_technologies:skype:*:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.0.0.106 | cpe:2.3:a:skype_technologies:skype:3.0.0.106:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.0.0.123 | cpe:2.3:a:skype_technologies:skype:3.0.0.123:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.0.0.137 | cpe:2.3:a:skype_technologies:skype:3.0.0.137:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.0.0.154 | cpe:2.3:a:skype_technologies:skype:3.0.0.154:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.0.0.190 | cpe:2.3:a:skype_technologies:skype:3.0.0.190:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.0.0.198 | cpe:2.3:a:skype_technologies:skype:3.0.0.198:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.0.0.205 | cpe:2.3:a:skype_technologies:skype:3.0.0.205:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.0.0.209 | cpe:2.3:a:skype_technologies:skype:3.0.0.209:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.0.0.214 | cpe:2.3:a:skype_technologies:skype:3.0.0.214:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.0.0.216 | cpe:2.3:a:skype_technologies:skype:3.0.0.216:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.0.0.217 | cpe:2.3:a:skype_technologies:skype:3.0.0.217:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.0.0.218 | cpe:2.3:a:skype_technologies:skype:3.0.0.218:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.1.0.112 | cpe:2.3:a:skype_technologies:skype:3.1.0.112:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.1.0.134 | cpe:2.3:a:skype_technologies:skype:3.1.0.134:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.1.0.144 | cpe:2.3:a:skype_technologies:skype:3.1.0.144:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.1.0.147 | cpe:2.3:a:skype_technologies:skype:3.1.0.147:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.1.0.150 | cpe:2.3:a:skype_technologies:skype:3.1.0.150:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.1.0.152 | cpe:2.3:a:skype_technologies:skype:3.1.0.152:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.2.0.53 | cpe:2.3:a:skype_technologies:skype:3.2.0.53:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.2.0.63 | cpe:2.3:a:skype_technologies:skype:3.2.0.63:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.2.0.82 | cpe:2.3:a:skype_technologies:skype:3.2.0.82:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.2.0.115 | cpe:2.3:a:skype_technologies:skype:3.2.0.115:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.2.0.145 | cpe:2.3:a:skype_technologies:skype:3.2.0.145:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.2.0.148 | cpe:2.3:a:skype_technologies:skype:3.2.0.148:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.2.0.152 | cpe:2.3:a:skype_technologies:skype:3.2.0.152:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.2.0.158 | cpe:2.3:a:skype_technologies:skype:3.2.0.158:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.2.0.163 | cpe:2.3:a:skype_technologies:skype:3.2.0.163:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.2.0.175 | cpe:2.3:a:skype_technologies:skype:3.2.0.175:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.5.0.107 | cpe:2.3:a:skype_technologies:skype:3.5.0.107:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.5.0.158 | cpe:2.3:a:skype_technologies:skype:3.5.0.158:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.5.0.178 | cpe:2.3:a:skype_technologies:skype:3.5.0.178:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.5.0.202 | cpe:2.3:a:skype_technologies:skype:3.5.0.202:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.5.0.214 | cpe:2.3:a:skype_technologies:skype:3.5.0.214:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.5.0.229 | cpe:2.3:a:skype_technologies:skype:3.5.0.229:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.5.0.234 | cpe:2.3:a:skype_technologies:skype:3.5.0.234:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.5.0.239 | cpe:2.3:a:skype_technologies:skype:3.5.0.239:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.6.0.127 | cpe:2.3:a:skype_technologies:skype:3.6.0.127:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.6.0.159 | cpe:2.3:a:skype_technologies:skype:3.6.0.159:beta:*:*:*:*:*:* |
| skype_technologies | skype | 3.6.0.216 | cpe:2.3:a:skype_technologies:skype:3.6.0.216:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.6.0.244 | cpe:2.3:a:skype_technologies:skype:3.6.0.244:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.6.0.248 | cpe:2.3:a:skype_technologies:skype:3.6.0.248:*:*:*:*:*:*:* |
| skype_technologies | skype | 3.8.0.96 | cpe:2.3:a:skype_technologies:skype:3.8.0.96:beta:*:*:*:*:*:* |