PT-2022-19212 · Zoom · Zoom On-Premise Meeting Connector Mmr

Published

2022-10-14

·

Updated

2022-10-18

·

CVE-2022-28759

CVSS v3.1

8.6

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
Name of the Vulnerable Software and Affected Versions Zoom On-Premise Meeting Connector MMR versions prior to 4.8.20220815.130
Description The issue allows a malicious actor to obtain the audio and video feed of a meeting they were not authorized to join and cause other meeting disruptions due to an improper access control vulnerability.
Recommendations For Zoom On-Premise Meeting Connector MMR versions prior to 4.8.20220815.130, update to version 4.8.20220815.130 or later to resolve the issue.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2022-28759

Affected Products

Zoom On-Premise Meeting Connector Mmr