CVE-2024-24696: Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows - Improper Input Validation
Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an authenticated user to conduct a disclosure of information via network access.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-24696?
CVE-2024-24696 is classified as a medium-severity vulnerability involving improper input validation.
How do I fix CVE-2024-24696?
To remediate CVE-2024-24696, update to the latest version of the affected Zoom software, ensuring it is beyond the specified vulnerable versions.
Which Zoom products are affected by CVE-2024-24696?
CVE-2024-24696 affects the Zoom Desktop Client, Zoom VDI Client, and Zoom Meeting SDK for Windows, particularly versions below the specified thresholds.
Can CVE-2024-24696 allow unauthorized access to sensitive information?
Yes, CVE-2024-24696 may allow an authenticated user to disclose sensitive information via network access due to improper input validation.
When was CVE-2024-24696 reported?
CVE-2024-24696 was reported in early 2024, highlighting security concerns in the Zoom software.