6.5

CVE-2023-39205

Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to conduct a denial of service via network access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zoom ≫ Meetings SwPlatform android Version < 5.16.0
Zoom ≫ Meetings SwPlatform iphone_os Version < 5.16.0
Zoom ≫ Meetings SwPlatform linux Version < 5.16.0
Zoom ≫ Meetings SwPlatform macos Version < 5.16.0
Zoom ≫ Meetings SwPlatform windows Version < 5.16.0
Zoom ≫ Video Software Development Kit SwPlatform android Version < 1.9.0
Zoom ≫ Video Software Development Kit SwPlatform iphone_os Version < 1.9.0
Zoom ≫ Video Software Development Kit SwPlatform linux Version < 1.9.0
Zoom ≫ Video Software Development Kit SwPlatform macos Version < 1.9.0
Zoom ≫ Video Software Development Kit SwPlatform windows Version < 1.9.0
Zoom ≫ Virtual Desktop Infrastructure Version < 5.14.13
Zoom ≫ Virtual Desktop Infrastructure Version >= 5.15.0 < 5.15.11
Zoom ≫ Zoom SwPlatform android Version < 5.16.0
Zoom ≫ Zoom SwPlatform iphone_os Version < 5.16.0
Zoom ≫ Zoom SwPlatform linux Version < 5.16.0
Zoom ≫ Zoom SwPlatform macos Version < 5.16.0
Zoom ≫ Zoom SwPlatform windows Version < 5.16.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.86% 0.535
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
security@zoom.us 4.3 2.8 1.4
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
CWE-754 Improper Check for Unusual or Exceptional Conditions

The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.

https://explore.zoom.us/en/trust/security/security-bulletin/
Vendor Advisory