📦

zoom_client_for_meetings

Vendor: zoom

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 0.50% Exploit Prob.
Latest CVE CVE-2021-34420 Nov 11

Security Vulnerability Index

Page 1 / 1
4.7 CVSS

The Zoom Client for Meetings for Windows installer before version 5.5.4 does not properly verify the signature of files with .msi, .ps1, and .bat extensions. This could lead to a malicious actor installing malicious software on a customer’s computer.

EPSS: 0.39%
3.7 CVSS

In the Zoom Client for Meetings for Ubuntu Linux before version 5.1.0, there is an HTML injection flaw when sending a remote control request to a user in the process of in-meeting screen sharing. This could allow meeting participants to be targeted for social engineering attacks.

EPSS: 0.60%