Latest zoom zoom Vulnerabilities

Zoom Desktop Client for Windows - Improper Access Control
Zoom Meeting Software Development Kit<5.16.10
Zoom Video Software Development Kit<5.16.10
Zoom Zoom<5.16.10
Zoom Virtual Desktop Infrastructure<5.14.14
Zoom Virtual Desktop Infrastructure>=5.15.0<5.15.12
Zoom Virtual Desktop Infrastructure>=5.16.0<5.16.10
and 1 more
Improper authentication in some Zoom clients before version 5.16.5 may allow an authenticated user to conduct a denial of service via network access.
Zoom Meeting Software Development Kit<5.16.5
Zoom Video Software Development Kit<5.16.5
Zoom Virtual Desktop Infrastructure<5.14.14
Zoom Virtual Desktop Infrastructure>=5.15.0<5.15.12
Zoom Zoom<5.16.5
Zoom Zoom<5.16.5
and 3 more
Path traversal in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for Windows may allow an authenticated user to conduct an escalation of privilege via network access.
Zoom Meeting Software Development Kit<5.16.5
Zoom Video Software Development Kit<5.16.5
Zoom Virtual Desktop Infrastructure<5.14.14
Zoom Virtual Desktop Infrastructure>=5.15.0<5.15.12
Zoom Zoom<5.16.5
Improper access control in Zoom Mobile App for iOS and Zoom SDKs for iOS before version 5.16.5 may allow an authenticated user to conduct a disclosure of information via network access.
Zoom Meeting Software Development Kit<5.16.0
Zoom Meeting Software Development Kit<5.16.5
Zoom Video Software Development Kit<5.16.5
Zoom Zoom<5.16.5
Cryptographic issues Zoom Mobile App for Android, Zoom Mobile App for iOS, and Zoom SDKs for Android and iOS before version 5.16.0 may allow a privileged user to conduct a disclosure of information vi...
Zoom Meeting Software Development Kit<5.16.0
Zoom Meeting Software Development Kit<5.16.0
Zoom Video Software Development Kit<5.16.0
Zoom Video Software Development Kit<5.16.0
Zoom Zoom<5.16.0
Zoom Zoom<5.16.0
Improper authorization in some Zoom clients may allow an authorized user to conduct an escalation of privilege via network access.
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Rooms<5.16.0
and 10 more
Insufficient control flow management in some Zoom clients may allow an authenticated user to conduct an information disclosure via network access.
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Virtual Desktop Infrastructure<5.14.13
Zoom Virtual Desktop Infrastructure>=5.15.0<5.15.11
Zoom Zoom<5.16.0
and 2 more
Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information disclosure via network access.
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Rooms<5.16.0
and 10 more
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Rooms<5.16.0
and 15 more
Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to conduct a denial of service via network access.
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Meetings<5.16.0
Zoom Video Software Development Kit<1.9.0
and 11 more
Uncontrolled resource consumption in Zoom Team Chat for Zoom Desktop Client for Windows and Zoom VDI Client may allow an unauthenticated user to conduct a disclosure of information via network access.
Zoom Virtual Desktop Infrastructure<5.14.13
Zoom Virtual Desktop Infrastructure>=5.15.0<5.15.11
Zoom Zoom<5.16.0
Improper authentication in Zoom clients may allow an authenticated user to conduct a denial of service via network access.
Zoom Meeting Software Development Kit<5.15.5
Zoom Virtual Desktop Infrastructure<5.14.12
Zoom Virtual Desktop Infrastructure>=5.15.0<5.15.4
Zoom Zoom<5.15.5
Zoom Zoom<5.15.5
Zoom Zoom<5.15.5
and 2 more
Improper input validation in Zoom Desktop Client for Linux before version 5.15.10 may allow an unauthenticated user to conduct a denial of service via network access.
Zoom Zoom<5.15.10
Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated user to enable a denial of service via network access.
Zoom Meeting Software Development Kit<5.15.5
Zoom Meeting Software Development Kit<5.15.5
Zoom Meeting Software Development Kit<5.15.5
Zoom Meeting Software Development Kit<5.15.5
Zoom Meeting Software Development Kit<5.15.5
Zoom Rooms<5.15.5
and 8 more
Improper privilege management in Zoom Desktop Client for Windows and Zoom Rooms for Windows before 5.15.5 may allow an authenticated user to enable an information disclosure via local access.
Zoom Rooms<5.15.5
Zoom Zoom<5.15.5
Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may allow an unauthenticated user to enable an escalation of privilege via network acc...
Zoom Virtual Desktop Infrastructure<5.15.2
Zoom Zoom<5.15.2
Improper input validation in Zoom Desktop Client for Windows before 5.15.5 may allow an authenticated user to enable an information disclosure via network access.
Zoom Zoom<5.15.5
Improper input validation in Zoom Desktop Client for Windows before 5.14.7 may allow an unauthenticated user to enable an escalation of privilege via network access.
Zoom Zoom<5.14.7
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow a privileged user to enable information disclosure via network access.
Zoom Rooms<5.14.10
Zoom Rooms<5.14.10
Zoom Rooms<5.14.10
Zoom Rooms<5.14.10
Zoom Virtual Desktop Infrastructure<5.14.10
Zoom Zoom<5.14.10
and 4 more
Insufficient verification of data authenticity in Zoom Desktop Client for Windows before 5.14.5 may allow an authenticated user to enable an escalation of privilege via network access.
Zoom Zoom<5.14.5
Path traversal in Zoom Desktop Client for Windows before 5.14.7 may allow an unauthenticated user to enable an escalation of privilege via network access.
Zoom Zoom<5.14.7
Untrusted search path in the installer for Zoom Desktop Client for Windows before 5.14.5 may allow an authenticated user to enable an escalation of privilege via local access.
Zoom Zoom<5.14.5
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network access.
Zoom Rooms<5.14.10
Zoom Rooms<5.14.10
Zoom Rooms<5.14.10
Zoom Rooms<5.14.10
Zoom Virtual Desktop Infrastructure<5.14.10
Zoom Zoom<5.14.10
and 4 more
Buffer overflow in Zoom Clients before 5.14.5 may allow an unauthenticated user to enable a denial of service via network access.
Zoom Rooms<5.14.5
Zoom Rooms<5.14.5
Zoom Rooms<5.14.5
Zoom Rooms<5.14.5
Zoom Virtual Desktop Infrastructure<5.14.5
Zoom Zoom<5.14.5
and 4 more
Improper input validation in the Zoom Desktop Client for Windows before version 5.15.0 may allow an unauthorized user to enable an escalation of privilege via network access.
Zoom Zoom<5.15.0
Exposure of information intended to be encrypted by some Zoom clients may lead to disclosure of sensitive information.
Zoom Meetings=5.15.0
Zoom Meetings=5.15.0
Zoom Meetings=5.15.0
Zoom Meetings=5.15.1
Zoom Rooms=5.15.0
Zoom Rooms=5.15.0
and 18 more
Exposure of resource to wrong sphere in Zoom for Windows and Zoom for MacOS clients before 5.14.10 may allow an authenticated user to potentially enable information disclosure via network access.
Zoom Zoom<5.14.10
Zoom Zoom<5.14.10
Zoom Rooms<5.14.0
Zoom Zoom<5.14.0
Zoom Virtual Desktop Infrastructure<5.14.0
Microsoft Windows
Insufficient verification of data authenticity in Zoom for Windows clients before 5.14.0 may allow an authenticated user to potentially enable an escalation of privilege via network access.
Zoom Zoom<5.14.0
Zoom for Windows clients prior to 5.13.5 contain an improper verification of cryptographic signature vulnerability. A malicious user may potentially downgrade Zoom Client components to previous versi...
Zoom Zoom<5.13.5
Zoom for Linux clients prior to 5.13.10 contain an HTML injection vulnerability. If a victim starts a chat with a malicious user it could result in a Zoom application crash.
Zoom Zoom<5.13.10
Zoom clients prior to 5.13.10 contain an HTML injection vulnerability. A malicious user could inject HTML into their display name potentially leading a victim to a malicious website during meeting c...
Zoom Zoom<5.13.10
Zoom Zoom<5.13.10
Zoom Zoom<5.13.10
Zoom Zoom<5.13.10
Zoom Zoom<5.13.10
Zoom clients prior to 5.13.5 contain an improper trust boundary implementation vulnerability. If a victim saves a local recording to an SMB location and later opens it using a link from Zoom’s web por...
Zoom Rooms<5.13.5
Zoom Rooms<5.13.5
Zoom Rooms<5.13.5
Zoom Rooms<5.13.5
Zoom Rooms<5.13.5
Zoom Zoom<5.13.5
and 6 more
Zoom clients before version 5.13.5 contain a STUN parsing vulnerability. A malicious actor could send specially crafted UDP traffic to a victim Zoom client to remotely cause the client to crash, causi...
Zoom Zoom<5.13.5
Zoom for Windows clients before version 5.13.3, Zoom Rooms for Windows clients before version 5.13.5 and Zoom VDI for Windows clients before 5.13.1 contain an information disclosure vulnerability. A r...
Zoom Rooms<5.13.3
Zoom Virtual Desktop Infrastructure<5.13.1
Zoom Zoom<5.13.3
Zoom clients before version 5.13.5 contain a STUN parsing vulnerability. A malicious actor could send specially crafted UDP traffic to a victim Zoom client to remotely cause the client to crash, causi...
Zoom Zoom<5.13.5
Zoom for Android clients before version 5.13.0 contain a path traversal vulnerability. A third party app could exploit this vulnerability to read and write to the Zoom application data directory.
Zoom Zoom<5.13.0
The Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.11.0 are susceptible to a URL parsing vulnerability. If a malicious Zoom meeting URL is opened, the maliciou...
Zoom Virtual Desktop Infrastructure<5.10.7
Zoom Zoom<5.11.0
Zoom Zoom<5.11.0
Zoom Zoom<5.11.0
Zoom Zoom<5.11.0
Zoom Zoom<5.11.0
Zoom through 5.5.4 sometimes allows attackers to read private information on a participant's screen, even though the participant never attempted to share the private part of their screen. When a user ...
Zoom Zoom<=5.5.4
An exploitable partial path traversal vulnerability exists in the way Zoom Client version 4.6.10 processes messages including shared code snippets. A specially crafted chat message can cause an arbitr...
Zoom Zoom=4.6.10
An exploitable path traversal vulnerability exists in the Zoom client, version 4.6.10 processes messages including animated GIFs. A specially crafted chat message can cause an arbitrary file write, wh...
Zoom Zoom=4.6.10
The Zoom Client before 4.4.53932.0709 on macOS allows remote code execution, a different vulnerability than CVE-2019-13450. If the ZoomOpener daemon (aka the hidden web server) is running, but the Zoo...
Zoom Zoom<4.4.53932.0709
In the Zoom Client through 4.4.4 and RingCentral 7.0.136380.0312 on macOS, remote attackers can force a user to join a video call with the video camera active. This occurs because any web site can int...
=7.0.136380.0312
Zoom Zoom<=4.4.4
Zoom Zoom<4.4.2

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203