cognitive cybersecurity intelligence

News and Analysis

Search

Microsoft Bookings Vulnerability Let Attackers Alter the Meeting Details

Microsoft Bookings Vulnerability Let Attackers Alter the Meeting Details

A vulnerability in Microsoft Bookings allowed attackers to manipulate meeting details via HTML injection due to inadequate input validation. Exploited mainly through the “Reschedule” functionality, this flaw enabled phishing attacks and email manipulation, affecting organizations using Microsoft 365. Microsoft remedied the issue by February 2025, though some parameters remained vulnerable. Strong input validation is recommended.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts