PT-2023-28870 · Zoom · Zoom Mobile App For Ios+3

Published

2023-12-13

·

Updated

2024-09-19

·

CVE-2023-43583

CVSS v3.1

4.9

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Zoom Mobile App for Android versions prior to 5.16.0 Zoom Mobile App for iOS versions prior to 5.16.0 Zoom SDKs for Android versions prior to 5.16.0 Zoom SDKs for iOS versions prior to 5.16.0
Description The issue is related to cryptographic problems in the Zoom Mobile App for Android, Zoom Mobile App for iOS, and Zoom SDKs for Android and iOS. It may allow a privileged user to conduct a disclosure of information via network access.
Recommendations For Zoom Mobile App for Android versions prior to 5.16.0, update to version 5.16.0 or later. For Zoom Mobile App for iOS versions prior to 5.16.0, update to version 5.16.0 or later. For Zoom SDKs for Android versions prior to 5.16.0, update to version 5.16.0 or later. For Zoom SDKs for iOS versions prior to 5.16.0, update to version 5.16.0 or later.

Fix

Using Hardcoded Credentials

Weakness Enumeration

Related Identifiers

CVE-2023-43583

Affected Products

Zoom Mobile App For Android
Zoom Mobile App For Ios
Zoom Sdks For Android
Zoom Sdks For Ios