First published: Tue Jul 11 2023(Updated: )
Relative path traversal in the Zoom Client SDK before version 5.15.0 may allow an unauthorized user to enable information disclosure via local access.
Credit: security@zoom.us security@zoom.us
Affected Software | Affected Version | How to fix |
---|---|---|
Zoom SDK | <5.15.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-34117 is a vulnerability in the Zoom Client SDK before version 5.15.0 that may allow an unauthorized user to enable information disclosure via local access.
The Zoom Software Development Kit (SDK) versions up to 5.15.0 are affected by CVE-2023-34117.
CVE-2023-34117 has a severity of Low (3.3).
An unauthorized user can exploit CVE-2023-34117 by performing relative path traversal to enable information disclosure via local access.
To fix CVE-2023-34117, it is recommended to update to Zoom Client SDK version 5.15.0 or later.