First published: Tue Aug 08 2023(Updated: )
Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may allow an unauthenticated user to enable an escalation of privilege via network access.
Credit: security@zoom.us security@zoom.us
Affected Software | Affected Version | How to fix |
---|---|---|
Zoom Virtual Desktop Infrastructure | <5.15.2 | |
Zoom Zoom | <5.15.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Zoom Desktop Client vulnerability is CVE-2023-39213.
The title of the vulnerability is 'Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may allow an unauthenticated user to enable an escalation of privilege via network access.'
The severity of CVE-2023-39213 is critical with a CVSS score of 9.6.
Zoom Desktop Client for Windows and Zoom VDI Client versions before 5.15.2 are affected by CVE-2023-39213.
An unauthenticated user can exploit CVE-2023-39213 by enabling an escalation of privilege via network access.