CVE-2023-28603: High severity oracle virtual desktop infrastructure vulnerability
Zoom VDI client installer prior to 5.14.0 contains an improper access control vulnerability. A malicious user may potentially delete local files without proper permissions.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-28603?
CVE-2023-28603 is a vulnerability in the Zoom VDI client installer prior to version 5.14.0 that allows a malicious user to delete local files without proper permissions.
How does CVE-2023-28603 impact Zoom VDI client installer?
CVE-2023-28603 impacts Zoom VDI client installer by allowing a malicious user to delete local files without proper permissions.
What is the severity of CVE-2023-28603?
The severity of CVE-2023-28603 is high with a CVSS score of 7.1.
How can I fix CVE-2023-28603?
To fix CVE-2023-28603, update Zoom VDI client installer to version 5.14.0 or later.
Where can I find more information about CVE-2023-28603?
You can find more information about CVE-2023-28603 in the Zoom Security Bulletin at https://explore.zoom.us/en/trust/security/security-bulletin/