CVE-2023-39212: High severity zoom rooms vulnerability
Published Aug 8, 2023
·Updated
Untrusted search path in Zoom Rooms for Windows before version 5.15.5 may allow an authenticated user to enable a denial of service via local access.
Affected Software
1 affected component
Zoom Rooms Windows<5.15.5
Event History
Aug 8, 2023
CVE Published
via MITRE·09:32 PM
Data Sourced
via MITRE·09:32 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-39212?
CVE-2023-39212 is a vulnerability in Zoom Rooms for Windows before version 5.15.5 that may allow an authenticated user to enable a denial of service via local access.
2
How severe is CVE-2023-39212?
CVE-2023-39212 has a severity rating of 5.5 (high).
3
How can an authenticated user exploit CVE-2023-39212?
An authenticated user can exploit CVE-2023-39212 by using local access to enable a denial of service in Zoom Rooms for Windows before version 5.15.5.
4
Which software versions are affected by CVE-2023-39212?
Zoom Rooms for Windows versions up to and excluding 5.15.5 are affected by CVE-2023-39212.
5
Is there a fix for CVE-2023-39212?
Yes, upgrading Zoom Rooms for Windows to version 5.15.5 or newer will fix CVE-2023-39212.