CVE-2023-36535
- EPSS 0.17%
- Veröffentlicht 08.08.2023 18:15:14
- Zuletzt bearbeitet 21.11.2024 08:09:53
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network access.
CVE-2023-36532
- EPSS 0.52%
- Veröffentlicht 08.08.2023 18:15:13
- Zuletzt bearbeitet 21.11.2024 08:09:52
Buffer overflow in Zoom Clients before 5.14.5 may allow an unauthenticated user to enable a denial of service via network access.
CVE-2023-36536
- EPSS 0.06%
- Veröffentlicht 11.07.2023 18:15:20
- Zuletzt bearbeitet 21.11.2024 08:09:53
Untrusted search path in the installer for Zoom Rooms for Windows before version 5.15.0 may allow an authenticated user to enable an escalation of privilege via local access.
CVE-2023-36537
- EPSS 0.03%
- Veröffentlicht 11.07.2023 18:15:20
- Zuletzt bearbeitet 21.11.2024 08:09:53
Improper privilege management in Zoom Rooms for Windows before version 5.14.5 may allow an authenticated user to enable an escalation of privilege via local access.
CVE-2023-36538
- EPSS 0.04%
- Veröffentlicht 11.07.2023 18:15:20
- Zuletzt bearbeitet 21.11.2024 08:09:53
Improper access control in Zoom Rooms for Windows before version 5.15.0 may allow an authenticated user to enable an escalation of privilege via local access.
CVE-2023-34118
- EPSS 0.04%
- Veröffentlicht 11.07.2023 18:15:16
- Zuletzt bearbeitet 21.11.2024 08:06:35
Improper privilege management in Zoom Rooms for Windows before version 5.14.5 may allow an authenticated user to enable an escalation of privilege via local access.
CVE-2023-34119
- EPSS 0.05%
- Veröffentlicht 11.07.2023 18:15:16
- Zuletzt bearbeitet 21.11.2024 08:06:35
Insecure temporary file in the installer for Zoom Rooms for Windows before version 5.15.0 may allow an authenticated user to enable an escalation of privilege via local access.
CVE-2023-36539
- EPSS 0.14%
- Veröffentlicht 30.06.2023 03:15:09
- Zuletzt bearbeitet 21.11.2024 08:09:53
Exposure of information intended to be encrypted by some Zoom clients may lead to disclosure of sensitive information.
CVE-2023-34121
- EPSS 0.43%
- Veröffentlicht 13.06.2023 18:15:21
- Zuletzt bearbeitet 21.11.2024 08:06:35
Improper input validation in the Zoom for Windows, Zoom Rooms, Zoom VDI Windows Meeting clients before 5.14.0 may allow an authenticated user to potentially enable an escalation of privilege via network access.
CVE-2023-28597
- EPSS 0.59%
- Veröffentlicht 27.03.2023 21:15:12
- Zuletzt bearbeitet 19.02.2025 16:15:37
Zoom clients prior to 5.13.5 contain an improper trust boundary implementation vulnerability. If a victim saves a local recording to an SMB location and later opens it using a link from Zoom’s web portal, an attacker positioned on an adjacent network...