CVE-2024-24697: Zoom Clients - Untrusted Search Path
Untrusted search path in some Zoom 32 bit Windows clients may allow an authenticated user to conduct an escalation of privilege via local access.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-24697?
CVE-2024-24697 has been classified as a moderate severity vulnerability due to its potential for privilege escalation.
How do I fix CVE-2024-24697?
To remediate CVE-2024-24697, update your Zoom client to the latest version beyond 5.17.0 for relevant products.
What types of Zoom products are affected by CVE-2024-24697?
CVE-2024-24697 affects various Zoom products, including Zoom Desktop Client, Zoom Client for Meetings, and Zoom Meeting SDK for versions below specified thresholds.
Can a non-authenticated user exploit CVE-2024-24697?
No, CVE-2024-24697 requires an authenticated user to exploit the vulnerability.
What attack vector is associated with CVE-2024-24697?
CVE-2024-24697 involves an untrusted search path that may allow local access to escalate privileges.