CVE-2023-34121
- EPSS 0.56%
- Published 13.06.2023 18:15:21
- Last modified 21.11.2024 08:06:35
Improper input validation in the Zoom for Windows, Zoom Rooms, Zoom VDI Windows Meeting clients before 5.14.0 may allow an authenticated user to potentially enable an escalation of privilege via network access.
CVE-2023-28597
- EPSS 0.78%
- Published 27.03.2023 21:15:12
- Last modified 19.02.2025 16:15:37
Zoom clients prior to 5.13.5 contain an improper trust boundary implementation vulnerability. If a victim saves a local recording to an SMB location and later opens it using a link from Zoom’s web portal, an attacker positioned on an adjacent network...
CVE-2023-22880
- EPSS 0.39%
- Published 16.03.2023 21:15:12
- Last modified 21.11.2024 07:45:34
Zoom for Windows clients before version 5.13.3, Zoom Rooms for Windows clients before version 5.13.5 and Zoom VDI for Windows clients before 5.13.1 contain an information disclosure vulnerability. A recent update to the Microsoft Edge WebView2 runtim...
CVE-2022-36929
- EPSS 0.13%
- Published 09.01.2023 19:15:11
- Last modified 21.11.2024 07:14:06
The Zoom Rooms Installer for Windows prior to 5.12.6 contains a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability during the install process to escalate their privileges to the SYSTEM user.
CVE-2022-36926
- EPSS 0.3%
- Published 09.01.2023 19:15:11
- Last modified 21.11.2024 07:14:06
Zoom Rooms for macOS clients before version 5.11.3 contain a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability to escalate their privileges to root.
CVE-2022-36927
- EPSS 0.14%
- Published 09.01.2023 19:15:11
- Last modified 21.11.2024 07:14:06
Zoom Rooms for macOS clients before version 5.11.3 contain a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability to escalate their privileges to root.
CVE-2022-36930
- EPSS 0.12%
- Published 09.01.2023 19:15:11
- Last modified 21.11.2024 07:14:06
Zoom Rooms for Windows installers before version 5.13.0 contain a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability in an attack chain to escalate their privileges to the SYSTEM user.
CVE-2022-36925
- EPSS 0.04%
- Published 09.01.2023 19:15:10
- Last modified 21.11.2024 07:14:05
Zoom Rooms for macOS clients before version 5.11.4 contain an insecure key generation mechanism. The encryption key used for IPC between the Zoom Rooms daemon service and the Zoom Rooms client was generated using parameters that could be obtained by ...
CVE-2022-36924
- EPSS 0.2%
- Published 17.11.2022 23:15:17
- Last modified 21.11.2024 07:14:05
The Zoom Rooms Installer for Windows prior to 5.12.6 contains a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability during the install process to escalate their privileges to the SYSTEM user.
CVE-2022-28766
- EPSS 0.23%
- Published 17.11.2022 23:15:15
- Last modified 21.11.2024 06:57:53
Windows 32-bit versions of the Zoom Client for Meetings before 5.12.6 and Zoom Rooms for Conference Room before version 5.12.6 are susceptible to a DLL injection vulnerability. A local low-privileged user could exploit this vulnerability to run arbit...