Zoom On-Premise Meeting Connector MMR before version 4.8.129.20220714 contains an improper access control vulnerability. As a result, a malicious actor can join a meeting which they are authorized to join without appearing to the other participants, can admit themselves into the meeting from the waiting room, and can become host and cause other meeting disruptions.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-33192 Zoom On-Premise Meeting Connector MMR before version 4.8.129.20220714 contains an improper access control vulnerability. As a result, a malicious actor can join a meeting which they are authorized to join without appearing to the other participants, can admit themselves into the meeting from the waiting room, and can become host and cause other meeting disruptions.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 16 Sep 2024 17:00:00 +0000

Type Values Removed Values Added
Title Zoom On-Premise Deployments: Improper Access Control Vulnerability Zoom On-Premise Deployments: Improper Access Control Vulnerability

cve-icon MITRE

Status: PUBLISHED

Assigner: Zoom

Published:

Updated: 2024-09-16T16:48:23.453Z

Reserved: 2022-04-06T00:00:00

Link: CVE-2022-28753

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-08-11T15:15:12.247

Modified: 2024-11-21T06:57:51.997

Link: CVE-2022-28753

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.