The Zoom Client for Meetings for Windows in all versions before version 5.3.2 writes log files to a user writable directory as a privileged user during the installation or update of the client. This could allow for potential privilege escalation if a link was created between the user writable directory used and a non-user writable directory.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Zoom

Published: 2021-09-27T13:55:35

Updated: 2024-08-04T00:12:50.000Z

Reserved: 2021-06-09T00:00:00

Link: CVE-2021-34408

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-09-27T14:15:08.083

Modified: 2022-07-12T17:42:04.277

Link: CVE-2021-34408

cve-icon Redhat

No data.