CVE-2023-36538: High severity zoom rooms vulnerability
Improper access control in Zoom Rooms for Windows before version 5.15.0 may allow an authenticated user to enable an escalation of privilege via local access.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Zoom Rooms for Windowsto a version that resolves this vulnerability.Fixed in 5.15.0
Event History
Frequently Asked Questions
What is CVE-2023-36538?
CVE-2023-36538 is a vulnerability in Zoom Rooms for Windows before version 5.15.0 that may allow an authenticated user to enable an escalation of privilege via local access.
How does CVE-2023-36538 impact Zoom Rooms for Windows?
CVE-2023-36538 can allow an authenticated user to elevate their privileges in Zoom Rooms for Windows if they have local access.
How severe is CVE-2023-36538?
CVE-2023-36538 has a severity level of high.
How can I fix CVE-2023-36538?
To fix CVE-2023-36538, update Zoom Rooms for Windows to version 5.15.0 or later.
Where can I find more information about CVE-2023-36538?
You can find more information about CVE-2023-36538 in the Zoom Rooms security bulletin at https://explore.zoom.us/en/trust/security/security-bulletin/.