CVE-2024-42435: Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers - Sensitive Information Exposure
Sensitive information disclosure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged user to conduct an information disclosure via network access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-42435?
CVE-2024-42435 is classified as a medium severity vulnerability due to the risk of sensitive information disclosure.
Which versions are affected by CVE-2024-42435?
CVE-2024-42435 affects various versions of Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers prior to version 6.1.0.
How do I fix CVE-2024-42435?
To mitigate CVE-2024-42435, it is recommended to update all affected Zoom products to version 6.1.0 or later.
Can CVE-2024-42435 be exploited remotely?
Yes, CVE-2024-42435 can be exploited remotely if a privileged user has network access to the affected software.
What types of Zoom products are impacted by CVE-2024-42435?
CVE-2024-42435 impacts Zoom Meeting SDKs, Zoom Rooms, and Zoom Workplace across various platforms including Windows, macOS, Android, and iOS.