CVE-2023-43586: Path Traversal
Path traversal in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for Windows may allow an authenticated user to conduct an escalation of privilege via network access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-43586?
CVE-2023-43586 is rated as a high severity vulnerability due to potential escalation of privilege through path traversal.
How do I fix CVE-2023-43586?
To fix CVE-2023-43586, users should update the affected Zoom desktop clients and SDKs to the latest versions provided by Zoom.
What software is affected by CVE-2023-43586?
CVE-2023-43586 affects Zoom Desktop Client, Zoom VDI Client, and Zoom SDKs for Windows up to specific version limits.
Can an unauthenticated user exploit CVE-2023-43586?
No, CVE-2023-43586 requires an authenticated user to exploit the vulnerability.
What is the attack vector for CVE-2023-43586?
The attack vector for CVE-2023-43586 involves network access that exploits path traversal to achieve privilege escalation.