Insufficient control flow management in some Zoom clients may allow an authenticated user to conduct an information disclosure via network access.
meetings
Vendor: zoom
Security Vulnerability Index
Page 1 / 5Improper authorization in some Zoom clients may allow an authorized user to conduct an escalation of privilege via network access.
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to conduct a denial of service via network access.
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information disclosure via network access.
Exposure of information intended to be encrypted by some Zoom clients may lead to disclosure of sensitive information.
Zoom Client for IT Admin macOS installers before version 5.13.5 contain a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability in an attack chain during the installation process to escalate their privileges to privileges to root.
Zoom Client for IT Admin Windows installers before version 5.13.5 contain a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability in an attack chain during the installation process to escalate their privileges to the SYSTEM user.
The Zoom Client for Meetings Installer for macOS (Standard and for IT Admin) before version 5.12.6 contains a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability during the install process to escalate their privileges to root.