First published: Thu Mar 16 2023(Updated: )
Zoom Client for IT Admin Windows installers before version 5.13.5 contain a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability in an attack chain during the installation process to escalate their privileges to the SYSTEM user.
Credit: security@zoom.us
Affected Software | Affected Version | How to fix |
---|---|---|
Zoom Meetings | <5.13.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2023-22883.
The severity of CVE-2023-22883 is high.
The affected software for CVE-2023-22883 is Zoom Meetings version up to exclusive 5.13.5 on Windows.
CVE-2023-22883 is a local privilege escalation vulnerability in Zoom Client for IT Admin Windows installers before version 5.13.5.
Yes, the fix for CVE-2023-22883 is to update Zoom Meetings to version 5.13.5 or later.