CVE-2024-27240: Zoom Apps for Windows - Improper Input Validation
Published Jul 15, 2024
·Updated
Improper input validation in the installer for some Zoom Apps for Windows may allow an authenticated user to conduct a privilege escalation via local access.
Affected Software
4 affected components
Zoom Apps for Windows
Zoom Rooms Windows<6.0.0
Zoom Workplace Desktop Windows<6.0.0
Zoom Workplace Virtual Desktop Infrastructure Windows<5.17.13
Event History
Jul 15, 2024
CVE Published
via MITRE·05:07 PM
Data Sourced
via MITRE·05:07 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Nov 1, 57564
Event
via NVD·07:18 PM
Frequently Asked Questions
1
What is the severity of CVE-2024-27240?
CVE-2024-27240 is rated as a high severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2024-27240?
To fix CVE-2024-27240, users should update their Zoom Apps for Windows to the latest version provided by Zoom.
3
Who is affected by CVE-2024-27240?
CVE-2024-27240 affects authenticated users of Zoom Apps for Windows.
4
What type of vulnerability is CVE-2024-27240?
CVE-2024-27240 is classified as an improper input validation vulnerability.
5
Can CVE-2024-27240 be exploited remotely?
No, CVE-2024-27240 requires local access to exploit the privilege escalation flaw.