CVE-2023-43585: High severity zoom meeting software development kit vulnerability
Published Dec 13, 2023
·Updated
Improper access control in Zoom Mobile App for iOS and Zoom SDKs for iOS before version 5.16.5 may allow an authenticated user to conduct a disclosure of information via network access.
Affected Software
4 affected components
Zoom Meeting Software Development Kit Android<5.16.0
Zoom Meeting Software Development Kit Iphone Os<5.16.5
Zoom Video Software Development Kit Iphone Os<5.16.5
Zoom Zoom Iphone Os<5.16.5
Event History
Dec 13, 2023
CVE Published
10:15 PM
Data Sourced
10:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-43585?
CVE-2023-43585 is assessed as a moderate severity vulnerability due to improper access control allowing information disclosure.
2
How do I fix CVE-2023-43585?
To fix CVE-2023-43585, update your Zoom Mobile App and SDKs for iOS to version 5.16.5 or later.
3
Who is affected by CVE-2023-43585?
CVE-2023-43585 affects users of the Zoom Mobile App for iOS and related Zoom SDKs prior to version 5.16.5.
4
What type of vulnerability is CVE-2023-43585?
CVE-2023-43585 is classified as an access control vulnerability that permits unauthorized information disclosure.
5
When was CVE-2023-43585 disclosed?
CVE-2023-43585 was disclosed in a security bulletin by Zoom on the date of its publication.