CVE-2023-39213: Critical severity oracle virtual desktop infrastructure vulnerability
Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may allow an unauthenticated user to enable an escalation of privilege via network access.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Zoom Desktop Client vulnerability?
The vulnerability ID for this Zoom Desktop Client vulnerability is CVE-2023-39213.
What is the title of the vulnerability?
The title of the vulnerability is 'Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may allow an unauthenticated user to enable an escalation of privilege via network access.'
What is the severity of CVE-2023-39213?
The severity of CVE-2023-39213 is critical with a CVSS score of 9.6.
Which software versions are affected by CVE-2023-39213?
Zoom Desktop Client for Windows and Zoom VDI Client versions before 5.15.2 are affected by CVE-2023-39213.
How can an unauthenticated user exploit CVE-2023-39213?
An unauthenticated user can exploit CVE-2023-39213 by enabling an escalation of privilege via network access.