Show filters
231 Total Results
Displaying 91-100 of 231
Sort by:
Attacker Value
Unknown

CVE-2023-36535

Disclosure Date: August 08, 2023 (last updated October 08, 2023)
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network access.
Attacker Value
Unknown

CVE-2023-36534

Disclosure Date: August 08, 2023 (last updated October 08, 2023)
Path traversal in Zoom Desktop Client for Windows before 5.14.7 may allow an unauthenticated user to enable an escalation of privilege via network access.
Attacker Value
Unknown

CVE-2023-36532

Disclosure Date: August 08, 2023 (last updated October 08, 2023)
Buffer overflow in Zoom Clients before 5.14.5 may allow an unauthenticated user to enable a denial of service via network access.
Attacker Value
Unknown

CVE-2023-3947

Disclosure Date: July 26, 2023 (last updated October 08, 2023)
The Video Conferencing with Zoom plugin for WordPress is vulnerable to Sensitive Information Exposure due to hardcoded encryption key on the 'vczapi_encrypt_decrypt' function in versions up to, and including, 4.2.1. This makes it possible for unauthenticated attackers to decrypt and view the meeting id and password.
Attacker Value
Unknown

CVE-2023-34117

Disclosure Date: July 11, 2023 (last updated September 19, 2024)
Relative path traversal in the Zoom Client SDK before version 5.15.0 may allow an unauthorized user to enable information disclosure via local access.
Attacker Value
Unknown

CVE-2023-34116

Disclosure Date: July 11, 2023 (last updated September 19, 2024)
Improper input validation in the Zoom Desktop Client for Windows before version 5.15.0 may allow an unauthorized user to enable an escalation of privilege via network access.
Attacker Value
Unknown

CVE-2023-36539

Disclosure Date: June 30, 2023 (last updated September 18, 2024)
Exposure of information intended to be encrypted by some Zoom clients may lead to disclosure of sensitive information.
Attacker Value
Unknown

CVE-2023-34114

Disclosure Date: June 13, 2023 (last updated October 08, 2023)
Exposure of resource to wrong sphere in Zoom for Windows and Zoom for MacOS clients before 5.14.10 may allow an authenticated user to potentially enable information disclosure via network access.
Attacker Value
Unknown

CVE-2023-34121

Disclosure Date: June 13, 2023 (last updated September 19, 2024)
Improper input validation in the Zoom for Windows, Zoom Rooms, Zoom VDI Windows Meeting clients before 5.14.0 may allow an authenticated user to potentially enable an escalation of privilege via network access.
Attacker Value
Unknown

CVE-2023-28602

Disclosure Date: June 13, 2023 (last updated October 08, 2023)
Zoom for Windows clients prior to 5.13.5 contain an improper verification of cryptographic signature vulnerability. A malicious user may potentially downgrade Zoom Client components to previous versions.