CVE-2023-22883: Local Privilege Escalation in Zoom for Windows Installers
Published Mar 16, 2023
·Updated
Zoom Client for IT Admin Windows installers before version 5.13.5 contain a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability in an attack chain during the installation process to escalate their privileges to the SYSTEM user.
Affected Software
1 affected component
Zoom Meetings Windows<5.13.5
Event History
Mar 16, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2023-22883.
2
What is the severity of CVE-2023-22883?
The severity of CVE-2023-22883 is high.
3
What is the affected software for CVE-2023-22883?
The affected software for CVE-2023-22883 is Zoom Meetings version up to exclusive 5.13.5 on Windows.
4
What is the description of CVE-2023-22883?
CVE-2023-22883 is a local privilege escalation vulnerability in Zoom Client for IT Admin Windows installers before version 5.13.5.
5
Is there a fix for CVE-2023-22883?
Yes, the fix for CVE-2023-22883 is to update Zoom Meetings to version 5.13.5 or later.