6.5

CVE-2024-24699

Zoom Clients - Business Logic Error

Business logic error in some Zoom clients may allow an authenticated user to conduct information disclosure via network access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zoom ≫ Meeting Sdk Version < 5.16.5
Zoom ≫ Rooms Version < 5.17.0
Zoom ≫ Vdi Windows Meeting Clients SwPlatform windows Version < 5.15.15
Zoom ≫ Vdi Windows Meeting Clients SwPlatform windows Version > 5.15.15 < 5.16.10
Zoom ≫ Vdi Windows Meeting Clients SwPlatform windows Version > 5.16.10 < 5.17.5
Zoom ≫ Zoom SwPlatform android Version < 5.16.5
Zoom ≫ Zoom SwPlatform iphone_os Version < 5.16.5
Zoom ≫ Zoom SwPlatform linux Version < 5.16.5
Zoom ≫ Zoom SwPlatform macos Version < 5.16.5
Zoom ≫ Zoom SwPlatform windows Version < 5.16.5
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.66% 0.736
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
security@zoom.us 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://www.zoom.com/en/trust/security-bulletin/ZSB-24006/
Vendor Advisory