Improper access control in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for Windows before version 5.16.10 may allow an authenticated user to conduct an escalation of privilege via local access.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.zoom.com/en/trust/security-bulletin/ZSB-24001/ |
History
Fri, 20 Sep 2024 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-284 |
Fri, 20 Sep 2024 15:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-266 |
MITRE
Status: PUBLISHED
Assigner: Zoom
Published: 2024-01-12T21:44:00.743Z
Updated: 2024-09-20T14:52:01.494Z
Reserved: 2023-11-28T18:18:33.930Z
Link: CVE-2023-49647
Vulnrichment
No data.
NVD
Status : Modified
Published: 2024-01-12T22:15:45.130
Modified: 2024-11-21T08:33:39.630
Link: CVE-2023-49647
Redhat
No data.