CVE-2022-28759: Zoom On-Premise Deployments: Improper Access Control
Zoom On-Premise Meeting Connector MMR before version 4.8.20220815.130 contains an improper access control vulnerability. As a result, a malicious actor could obtain the audio and video feed of a meeting they were not authorized to join and cause other meeting disruptions.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Zoom On-Premise Meeting Connector vulnerability?
The vulnerability ID for this Zoom On-Premise Meeting Connector vulnerability is CVE-2022-28759.
What is the severity of CVE-2022-28759?
The severity of CVE-2022-28759 is high with a severity value of 8.6.
What is the affected software for CVE-2022-28759?
The affected software for CVE-2022-28759 is Zoom On-Premise Meeting Connector MMR before version 4.8.20220815.130.
How does CVE-2022-28759 impact meetings on Zoom On-Premise Meeting Connector?
CVE-2022-28759 allows a malicious actor to obtain the audio and video feed of a meeting they were not authorized to join and cause other disruptions.
Where can I find more information about CVE-2022-28759?
You can find more information about CVE-2022-28759 in the Zoom security bulletin at https://explore.zoom.us/en/trust/security/security-bulletin/