CVE-2024-45424: Zoom Workplace Apps - Business Logic Error
Published Feb 25, 2025
·Updated
Business logic error in some Zoom Workplace Apps may allow an unauthenticated user to conduct a disclosure of information via network access.
Affected Software
19 affected components
Zoom Meeting Software Development Kit Android<6.1.0
Zoom Meeting Software Development Kit Iphone Os<6.1.0
Zoom Meeting Software Development Kit Linux<6.1.0
Zoom Meeting Software Development Kit Macos<6.1.0
Zoom Meeting Software Development Kit Windows<6.1.0
Zoom Rooms Ipad Os<6.1.0
Zoom Rooms Macos<6.1.0
Zoom Rooms Windows<6.1.0
Zoom Rooms Controller Android<6.1.0
Zoom Rooms Controller Linux<6.1.0
Zoom Rooms Controller Macos<6.1.0
Zoom Rooms Controller Windows<6.1.0
Zoom Workplace Android<6.1.0
Zoom Workplace Iphone Os<6.1.0
Zoom Workplace Desktop Linux<6.1.0
Zoom Workplace Desktop Macos<6.1.0
Zoom Workplace Desktop Windows<6.1.0
Zoom Workplace Virtual Desktop Infrastructure Windows<6.1.10
Zoom Workplace Apps
Event History
Feb 25, 2025
CVE Published
via MITRE·07:34 PM
Data Sourced
via MITRE·07:34 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-45424?
CVE-2024-45424 is considered a significant vulnerability due to its potential to allow unauthorized information disclosure.
2
How do I fix CVE-2024-45424?
To fix CVE-2024-45424, users should ensure they are using the latest version of Zoom Workplace Apps that contains security patches addressing this issue.
3
What type of vulnerability is CVE-2024-45424?
CVE-2024-45424 is classified as a business logic error that can lead to unauthorized information disclosure.
4
Who is affected by CVE-2024-45424?
Users of Zoom Workplace Apps are affected by CVE-2024-45424 if they are using an unpatched version.
5
Can CVE-2024-45424 be exploited remotely?
Yes, CVE-2024-45424 can potentially be exploited by an unauthenticated user via network access.