Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network access.
The UI performs the wrong action with respect to the user’s request.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Rooms | Zoom | * | 5.14.10 (excluding) |
Virtual_desktop_infrastructure | Zoom | * | 5.14.10 (excluding) |
Zoom | Zoom | * | 5.14.10 (excluding) |