The Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.10.0 fails to properly validate the hostname during a server switch request. This issue could be used in a more sophisticated attack to trick an unsuspecting users client to connect to a malicious server when attempting to use Zoom services.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Zoom
Published: 2022-05-18T16:03:18.179310Z
Updated: 2024-09-17T04:14:00.754Z
Reserved: 2022-01-07T00:00:00
Link: CVE-2022-22787
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-05-18T17:15:08.630
Modified: 2024-11-21T06:47:27.027
Link: CVE-2022-22787
Redhat
No data.