PT-2023-24691 · Zoom · Zoom Vdi Windows Meeting Clients+3

Published

2023-06-13

·

Updated

2024-09-19

·

CVE-2023-34121

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Zoom for Windows versions prior to 5.14.0 Zoom Rooms versions prior to 5.14.0 Zoom VDI Windows Meeting clients versions prior to 5.14.0
Description The issue is related to improper input validation, which may allow an authenticated user to potentially enable an escalation of privilege via network access.
Recommendations For Zoom for Windows versions prior to 5.14.0, update to version 5.14.0 or later. For Zoom Rooms versions prior to 5.14.0, update to version 5.14.0 or later. For Zoom VDI Windows Meeting clients versions prior to 5.14.0, update to version 5.14.0 or later.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2023-34121

Affected Products

Zoom Rooms
Zoom Vdi Windows Meeting Clients
Zoom For Windows
Zoom