CVE Vulnerabilities

CVE-2023-43585

The UI Performs the Wrong Action

Published: Dec 13, 2023 | Modified: Nov 21, 2024
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Improper access control in Zoom Mobile App for iOS and Zoom SDKs for iOS before version 5.16.5 may allow an authenticated user to conduct a disclosure of information via network access.

Weakness

The UI performs the wrong action with respect to the user’s request.

Affected Software

NameVendorStart VersionEnd Version
Meeting_software_development_kitZoom*5.16.0 (excluding)
Meeting_software_development_kitZoom*5.16.5 (excluding)
Video_software_development_kitZoom*5.16.5 (excluding)
ZoomZoom*5.16.5 (excluding)

References