CVE-2024-39826: Zoom Workplace Apps and SDKs - Path traversal
Published Jul 15, 2024
·Updated
Race condition in Team Chat for some Zoom Workplace Apps and SDKs for Windows may allow an authenticated user to conduct information disclosure via network access.
Affected Software
4 affected components
Zoom Workplace Apps and SDKs
Zoom Meeting Software Development Kit Windows<6.0.0
Zoom Workplace Desktop Windows<6.0.0
Zoom Workplace Virtual Desktop Infrastructure Windows<5.17.13
Event History
Jul 15, 2024
CVE Published
via MITRE·05:24 PM
Data Sourced
via MITRE·05:24 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-39826?
CVE-2024-39826 has been classified as a medium severity vulnerability.
2
What does CVE-2024-39826 allow an attacker to do?
CVE-2024-39826 allows an authenticated user to conduct information disclosure through path traversal.
3
Which software is affected by CVE-2024-39826?
CVE-2024-39826 affects Zoom Workplace Apps and SDKs for Windows.
4
What is a potential impact of CVE-2024-39826?
The potential impact of CVE-2024-39826 is unauthorized access to sensitive information.
5
How do I fix CVE-2024-39826?
To fix CVE-2024-39826, update your Zoom Workplace Apps and SDKs to the latest version provided by Zoom.