First published: Tue Sep 12 2023(Updated: )
Untrusted search path in CleanZoom before file date 07/24/2023 may allow a privileged user to conduct an escalation of privilege via local access.
Credit: security@zoom.us
Affected Software | Affected Version | How to fix |
---|---|---|
Zoom | <2023-07-24 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-39201.
The title of this vulnerability is 'Untrusted search path in CleanZoom before file date 07/24/2023 may allow a privileged user to conduct an escalation of privilege via local access.'
The description of this vulnerability is that it involves an untrusted search path in CleanZoom before file date 07/24/2023, which may allow a privileged user to conduct an escalation of privilege via local access.
The software affected by this vulnerability is Zoom Cleanzoom.
The severity of this vulnerability is high with a CVSS score of 6.7.