Vulnerability index

Browse CVEs

216 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Zoom MEDIUM 6.7
CVE-2024-27247

Improper privilege management in the installer for Zoom Desktop Client for macOS before version 5.17.10 may allow a privileged user to conduct an esc…

Fix: 5.17.10+
Fix from $1,600 2024-04-09
Zoom HIGH 7.8
CVE-2024-24694

Improper privilege management in the installer for Zoom Desktop Client for Windows before version 5.17.10 may allow an authenticated user to conduct …

Fix: 5.7.10+
Fix from $1,950 2024-04-09
Rooms MEDIUM 5.5
CVE-2024-24693

Improper access control in the installer for Zoom Rooms Client for Windows before version 5.17.5 may allow an authenticated user to conduct a denial …

Fix: 5.17.5+
Fix from $1,600 2024-03-13
Meeting Sdk MEDIUM 6.5
CVE-2024-24699

Business logic error in some Zoom clients may allow an authenticated user to conduct information disclosure via network access.

Fix: 5.15.15 / 5.16.5+
Fix from $1,600 2024-02-14
Meeting Software Development Kit CRITICAL 9.8
CVE-2024-24691

Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an unauthentica…

Fix: 5.14.14 / 5.15.12+
Fix from $2,300 2024-02-14
Meeting Software Development Kit HIGH 7.8
CVE-2024-24697

Untrusted search path in some Zoom 32 bit Windows clients may allow an authenticated user to conduct an escalation of privilege via local access.

Fix: 5.15.5 / 5.16.2+
Fix from $1,950 2024-02-14
Meeting Software Development Kit MEDIUM 6.5
CVE-2024-24690

Improper input validation in some Zoom clients may allow an authenticated user to conduct a denial of service via network access.

Fix: 5.14.14 / 5.15.12+
Fix from $1,600 2024-02-14
Meeting Software Development Kit MEDIUM 6.5
CVE-2024-24695

Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an authenticate…

Fix: 5.15.15 / 5.16.5+
Fix from $1,600 2024-02-14
Meeting Software Development Kit MEDIUM 6.5
CVE-2024-24696

Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an authenticate…

Fix: 5.15.15 / 5.16.12+
Fix from $1,600 2024-02-14
Meeting Software Development Kit HIGH 7.8
CVE-2023-49647

Improper access control in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for Windows before version 5.16.10 may allow a…

Fix: 5.14.14 / 5.15.12+
Fix from $1,950 2024-01-12
Meeting Software Development Kit MEDIUM 6.5
CVE-2023-49646

Improper authentication in some Zoom clients before version 5.16.5 may allow an authenticated user to conduct a denial of service via network access.

Fix: 5.14.14 / 5.15.12+
Fix from $1,600 2023-12-13
Meeting Software Development Kit HIGH 8.8
CVE-2023-43586

Path traversal in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for Windows may allow an authenticated user to conduct …

Fix: 5.14.14 / 5.15.12+
Fix from $1,950 2023-12-13
Meeting Software Development Kit MEDIUM 6.5
CVE-2023-43585

Improper access control in Zoom Mobile App for iOS and Zoom SDKs for iOS before version 5.16.5 may allow an authenticated user to conduct a disclosur…

Fix: 5.16.0 / 5.16.5+
Fix from $1,600 2023-12-13
Rooms HIGH 7.8
CVE-2023-43590

Link following in Zoom Rooms for macOS before version 5.16.0 may allow an authenticated user to conduct an escalation of privilege via local access.

Fix: 5.16.0+
Fix from $1,950 2023-11-15
Rooms HIGH 7.8
CVE-2023-43591

Improper privilege management in Zoom Rooms for macOS before version 5.16.0 may allow an authenticated user to conduct an escalation of privilege vi…

Fix: 5.16.0+
Fix from $1,950 2023-11-15
Meetings HIGH 8.8
CVE-2023-43582

Improper authorization in some Zoom clients may allow an authorized user to conduct an escalation of privilege via network access.

Fix: 5.14.13 / 5.15.11+
Fix from $1,950 2023-11-15
Zoom MEDIUM 6.5
CVE-2023-43588

Insufficient control flow management in some Zoom clients may allow an authenticated user to conduct an information disclosure via network access.

Fix: 5.14.13 / 5.15.11+
Fix from $1,600 2023-11-15
Meetings HIGH 7.5
CVE-2023-39206

Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.

Fix: 1.9.0 / 5.14.13+
Fix from $1,950 2023-11-14
Virtual Desktop Infrastructure HIGH 7.5
CVE-2023-39203

Uncontrolled resource consumption in Zoom Team Chat for Zoom Desktop Client for Windows and Zoom VDI Client may allow an unauthenticated user to cond…

Fix: 5.14.13 / 5.15.11+
Fix from $1,950 2023-11-14
Meetings HIGH 7.5
CVE-2023-39204

Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.

Fix: 5.14.13 / 5.15.10+
Fix from $1,950 2023-11-14
Meetings MEDIUM 6.5
CVE-2023-39199

Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information disclosure via network access.

Fix: 5.14.13 / 5.15.11+
Fix from $1,600 2023-11-14
Meetings MEDIUM 6.5
CVE-2023-39205

Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to conduct a denial of service via network access.

Fix: 1.9.0 / 5.14.13+
Fix from $1,600 2023-11-14
Rooms MEDIUM 5.5
CVE-2023-39202

Untrusted search path in Zoom Rooms Client for Windows and Zoom VDI Client may allow a privileged user to conduct a denial of service via local acces…

Fix: 5.14.13 / 5.15.11+
Fix from $1,600 2023-11-14
Zoom HIGH 7.5
CVE-2023-39208

Improper input validation in Zoom Desktop Client for Linux before version 5.15.10 may allow an unauthenticated user to conduct a denial of service vi…

Fix: 5.15.10+
Fix from $1,950 2023-09-12
Meeting Software Development Kit MEDIUM 6.5
CVE-2023-39215

Improper authentication in Zoom clients may allow an authenticated user to conduct a denial of service via network access.

Fix: 5.14.12 / 5.15.4+
Fix from $1,600 2023-09-12
Cleanzoom MEDIUM 6.7
CVE-2023-39201

Untrusted search path in CleanZoom before file date 07/24/2023 may allow a privileged user to conduct an escalation of privilege via local access.

Fix: 2023-07-24+
Fix from $1,600 2023-09-12
Virtual Desktop Infrastructure CRITICAL 9.8
CVE-2023-39213

Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may allow an unauthenticated user to…

Fix: 5.15.2+
Fix from $2,300 2023-08-08
Meeting Software Development Kit HIGH 8.1
CVE-2023-39214

Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated user to enable a denial of service via network access.

Fix: 5.15.5+
Fix from $1,950 2023-08-08
Rooms HIGH 7.8
CVE-2023-39211

Improper privilege management in Zoom Desktop Client for Windows and Zoom Rooms for Windows before 5.15.5 may allow an authenticated user to enable a…

Fix: 5.15.5+
Fix from $1,950 2023-08-08
Meeting Software Development Kit MEDIUM 5.5
CVE-2023-39210

Cleartext storage of sensitive information in Zoom Client SDK for Windows before 5.15.0 may allow an authenticated user to enable an information disc…

Fix: 5.15.0+
Fix from $1,600 2023-08-08