Show filters
58 Total Results
Displaying 1-10 of 58
Sort by:
Attacker Value
Unknown

CVE-2024-24691

Disclosure Date: February 14, 2024 (last updated October 05, 2024)
Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an unauthenticated user to conduct an escalation of privilege via network access.
Attacker Value
Unknown

CVE-2024-24912

Disclosure Date: May 01, 2024 (last updated May 02, 2024)
A local privilege escalation vulnerability has been identified in Harmony Endpoint Security Client for Windows versions E88.10 and below. To exploit this vulnerability, an attacker must first obtain the ability to execute local privileged code on the target system.
0
Attacker Value
Unknown

CVE-2024-24694

Disclosure Date: April 09, 2024 (last updated April 10, 2024)
Improper privilege management in the installer for Zoom Desktop Client for Windows before version 5.17.10 may allow an authenticated user to conduct an escalation of privilege via local access.
0
Attacker Value
Unknown

CVE-2024-24699

Disclosure Date: February 14, 2024 (last updated October 05, 2024)
Business logic error in some Zoom clients may allow an authenticated user to conduct information disclosure via network access.
Attacker Value
Unknown

CVE-2024-24698

Disclosure Date: February 14, 2024 (last updated October 05, 2024)
Improper authentication in some Zoom clients may allow a privileged user to conduct a disclosure of information via local access.
Attacker Value
Unknown

CVE-2024-24697

Disclosure Date: February 14, 2024 (last updated October 10, 2024)
Untrusted search path in some Zoom 32 bit Windows clients may allow an authenticated user to conduct an escalation of privilege via local access.
Attacker Value
Unknown

CVE-2024-24696

Disclosure Date: February 14, 2024 (last updated October 05, 2024)
Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an authenticated user to conduct a disclosure of information via network access.
Attacker Value
Unknown

CVE-2024-24695

Disclosure Date: February 14, 2024 (last updated October 05, 2024)
Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an authenticated user to conduct a disclosure of information via network access.
Attacker Value
Unknown

CVE-2024-24690

Disclosure Date: February 14, 2024 (last updated October 05, 2024)
Improper input validation in some Zoom clients may allow an authenticated user to conduct a denial of service via network access.
Attacker Value
Unknown

CVE-2022-28764

Disclosure Date: November 10, 2022 (last updated February 24, 2025)
The Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.12.6 is susceptible to a local information exposure vulnerability. A failure to clear data from a local SQL database after a meeting ends and the usage of an insufficiently secure per-device key encrypting that database results in a local malicious user being able to obtain meeting information such as in-meeting chat for the previous meeting attended from that local user account.