Zoom

Zoom

65 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.78%
  • Veröffentlicht 27.03.2023 21:15:12
  • Zuletzt bearbeitet 19.02.2025 16:15:37

Zoom clients prior to 5.13.5 contain an improper trust boundary implementation vulnerability. If a victim saves a local recording to an SMB location and later opens it using a link from Zoom’s web portal, an attacker positioned on an adjacent network...

  • EPSS 0.29%
  • Veröffentlicht 16.03.2023 21:15:13
  • Zuletzt bearbeitet 21.11.2024 07:45:34

Zoom clients before version 5.13.5 contain a STUN parsing vulnerability. A malicious actor could send specially crafted UDP traffic to a victim Zoom client to remotely cause the client to crash, causing a denial of service.

  • EPSS 0.44%
  • Veröffentlicht 16.03.2023 21:15:12
  • Zuletzt bearbeitet 21.11.2024 07:45:34

Zoom clients before version 5.13.5 contain a STUN parsing vulnerability. A malicious actor could send specially crafted UDP traffic to a victim Zoom client to remotely cause the client to crash, causing a denial of service.

  • EPSS 0.39%
  • Veröffentlicht 16.03.2023 21:15:12
  • Zuletzt bearbeitet 21.11.2024 07:45:34

Zoom for Windows clients before version 5.13.3, Zoom Rooms for Windows clients before version 5.13.5 and Zoom VDI for Windows clients before 5.13.1 contain an information disclosure vulnerability. A recent update to the Microsoft Edge WebView2 runtim...

  • EPSS 0.15%
  • Veröffentlicht 09.01.2023 19:15:11
  • Zuletzt bearbeitet 21.11.2024 07:14:06

Zoom for Android clients before version 5.13.0 contain a path traversal vulnerability. A third party app could exploit this vulnerability to read and write to the Zoom application data directory.

  • EPSS 0.48%
  • Veröffentlicht 11.08.2022 15:15:12
  • Zuletzt bearbeitet 21.11.2024 06:57:52

The Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.11.0 are susceptible to a URL parsing vulnerability. If a malicious Zoom meeting URL is opened, the malicious link may direct the user to connect to an arbitr...

  • EPSS 1.32%
  • Veröffentlicht 18.03.2021 14:15:14
  • Zuletzt bearbeitet 21.11.2024 05:59:09

Zoom through 5.5.4 sometimes allows attackers to read private information on a participant's screen, even though the participant never attempted to share the private part of their screen. When a user shares a specific application window via the Share...

Exploit
  • EPSS 0.62%
  • Veröffentlicht 08.06.2020 14:15:13
  • Zuletzt bearbeitet 21.11.2024 05:35:07

An exploitable partial path traversal vulnerability exists in the way Zoom Client version 4.6.10 processes messages including shared code snippets. A specially crafted chat message can cause an arbitrary binary planting which could be abused to achie...

Exploit
  • EPSS 0.5%
  • Veröffentlicht 08.06.2020 14:15:12
  • Zuletzt bearbeitet 21.11.2024 05:35:06

An exploitable path traversal vulnerability exists in the Zoom client, version 4.6.10 processes messages including animated GIFs. A specially crafted chat message can cause an arbitrary file write, which could potentially be abused to achieve arbitra...

Exploit
  • EPSS 1.52%
  • Veröffentlicht 12.07.2019 04:15:10
  • Zuletzt bearbeitet 21.11.2024 04:25:11

The Zoom Client before 4.4.53932.0709 on macOS allows remote code execution, a different vulnerability than CVE-2019-13450. If the ZoomOpener daemon (aka the hidden web server) is running, but the Zoom Client is not installed or can't be opened, an a...