CVE-2024-24693: Zoom Rooms Client for Windows - Improper Access Control
Published Mar 13, 2024
·Updated
Improper access control in the installer for Zoom Rooms Client for Windows before version 5.17.5 may allow an authenticated user to conduct a denial of service via local access.
Affected Software
1 affected component
Zoom Rooms Windows<5.17.5
Event History
Mar 13, 2024
CVE Published
via MITRE·07:30 PM
Data Sourced
via MITRE·07:30 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-24693?
CVE-2024-24693 has been rated as a medium severity vulnerability due to its potential for denial of service.
2
How do I fix CVE-2024-24693?
To address CVE-2024-24693, upgrade to Zoom Rooms Client for Windows version 5.17.5 or later.
3
Who is affected by CVE-2024-24693?
CVE-2024-24693 affects authenticated users of Zoom Rooms Client for Windows before version 5.17.5.
4
What type of vulnerability is CVE-2024-24693?
CVE-2024-24693 is characterized as an improper access control vulnerability.
5
What can an attacker do with CVE-2024-24693?
An attacker could conduct a denial of service by exploiting CVE-2024-24693 if they have local access on the affected system.