First published: Tue Aug 08 2023(Updated: )
Cleartext storage of sensitive information in Zoom Client SDK for Windows before 5.15.0 may allow an authenticated user to enable an information disclosure via local access.
Credit: security@zoom.us security@zoom.us
Affected Software | Affected Version | How to fix |
---|---|---|
Zoom Meeting Software Development Kit | <5.15.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-39210 is a vulnerability that involves the cleartext storage of sensitive information in Zoom Client SDK for Windows.
CVE-2023-39210 may allow an authenticated user with local access to enable an information disclosure.
CVE-2023-39210 affects Zoom Client SDK for Windows versions before 5.15.0.
The severity of CVE-2023-39210 is medium, with a score of 5.5.
Users should update the Zoom Client SDK for Windows to version 5.15.0 or above to fix CVE-2023-39210.