PT-2023-28870 · Zoom · Zoom Mobile App For Ios+3
Published
2023-12-13
·
Updated
2024-09-19
·
CVE-2023-43583
CVSS v3.1
4.9
Medium
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Zoom Mobile App for Android versions prior to 5.16.0
Zoom Mobile App for iOS versions prior to 5.16.0
Zoom SDKs for Android versions prior to 5.16.0
Zoom SDKs for iOS versions prior to 5.16.0
Description
The issue is related to cryptographic problems in the Zoom Mobile App for Android, Zoom Mobile App for iOS, and Zoom SDKs for Android and iOS. It may allow a privileged user to conduct a disclosure of information via network access.
Recommendations
For Zoom Mobile App for Android versions prior to 5.16.0, update to version 5.16.0 or later.
For Zoom Mobile App for iOS versions prior to 5.16.0, update to version 5.16.0 or later.
For Zoom SDKs for Android versions prior to 5.16.0, update to version 5.16.0 or later.
For Zoom SDKs for iOS versions prior to 5.16.0, update to version 5.16.0 or later.
Fix
Using Hardcoded Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Zoom Mobile App For Android
Zoom Mobile App For Ios
Zoom Sdks For Android
Zoom Sdks For Ios