CVE Vulnerabilities

CVE-2024-24691

Published: Feb 14, 2024 | Modified: Oct 04, 2024
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an unauthenticated user to conduct an escalation of privilege via network access.

Affected Software

Name Vendor Start Version End Version
Meeting_software_development_kit Zoom * 5.16.5 (excluding)
Rooms Zoom * 5.17.0 (excluding)
Vdi_windows_meeting_clients Zoom * 5.14.14 (excluding)
Vdi_windows_meeting_clients Zoom 5.14.14 (excluding) 5.15.12 (excluding)
Vdi_windows_meeting_clients Zoom 5.15.12 (excluding) 5.16.10 (excluding)
Zoom Zoom * 5.16.5 (excluding)

References